CVE-2013-3245
Last modified
CVE-2013-3245 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. plugins/demux/libmkv_plugin.dll in VideoLAN VLC Media Player 2.0.7, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MKV file, possibly involving an integer overflow and out-of-bounds read or heap-based buffer overflow, or an uncaught exception. NOTE: the vendor disputes the severity and claimed vulnerability type of this issue, stating "This PoC crashes VLC, indeed, but does nothing more... EPSS estimates a 2.89% chance of exploitation in the next 30 days.
Description
plugins/demux/libmkv_plugin.dll in VideoLAN VLC Media Player 2.0.7, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MKV file, possibly involving an integer overflow and out-of-bounds read or heap-based buffer overflow, or an uncaught exception. NOTE: the vendor disputes the severity and claimed vulnerability type of this issue, stating "This PoC crashes VLC, indeed, but does nothing more... this is not an integer overflow error, but an uncaught exception and I doubt that it is exploitable. This uncaught exception makes VLC abort, not execute random code, on my Linux 64bits machine." A PoC posted by the original researcher shows signs of an attacker-controlled out-of-bounds read, but the affected instruction does not involve a register that directly influences control flow
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Videolan | Vlc Media Player | 2.0.7 |
References
- http://secunia.com/advisories/52956Vendor Advisory
- http://secunia.com/blog/372/Vendor Advisory
- http://secunia.com/advisories/52956Vendor Advisory
- http://secunia.com/blog/372/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-3245?
How severe is CVE-2013-3245?
How do I fix CVE-2013-3245?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-3239phpMyAdmin 3.5.x before 3.5.8 and 4.x before 4.0.0-rc3, when…
- CVE-2013-3240Directory traversal vulnerability in the Export feature in p…
- CVE-2013-3241export.php (aka the export script) in phpMyAdmin 4.x before …
- CVE-2013-3242plugins/system/remember/remember.php in Joomla! 2.5.x before…
- CVE-2013-3243Unspecified vulnerability in OpenText/IXOS ECM for SAP NetWe…
- CVE-2013-3244Multiple unspecified vulnerabilities in the CJDB_FILL_MEMORY…
- CVE-2013-3246Stack-based buffer overflow in xnview.exe in XnView before 2…7.8
- CVE-2013-3247Heap-based buffer overflow in xnview.exe in XnView before 2.…7.8
- CVE-2013-3248Untrusted search path vulnerability in Corel PDF Fusion 1.11…
- CVE-2013-3249Stack-based buffer overflow in the "Add from text file" feat…
- CVE-2013-3250Cross-site request forgery (CSRF) vulnerability in the WP Ma…
- CVE-2013-3251Cross-site request forgery (CSRF) vulnerability in the qTran…
Are you affected by CVE-2013-3245?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
