Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 442758 (CVE-2012-5470) - media-video/vlc: multiple DoS vulnerability (CVE-2012-{5470,5855})
Summary: media-video/vlc: multiple DoS vulnerability (CVE-2012-{5470,5855})
Status: RESOLVED FIXED
Alias: CVE-2012-5470
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B3 [glsa]
Keywords:
Depends on:
Blocks:
 
Reported: 2012-11-11 16:34 UTC by GLSAMaker/CVETool Bot
Modified: 2014-11-05 22:09 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description GLSAMaker/CVETool Bot gentoo-dev 2012-11-11 16:34:58 UTC
CVE-2012-5470 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2012-5470):
  libpng_plugin in VideoLAN VLC media player 2.0.3 allows remote attackers to
  cause a denial of service (application crash) via a crafted PNG file.


MITRE notes the following on the oss-sec mailing list:

'The "Rewritten support for images, including jpeg, png, xcf, bmp..."
and "2.0.4 fixes numerous issues, including audio device selection, Qt
and Mac OS interface, security issues and Windows wallpaper mode..."
lines in http://www.videolan.org/vlc/releases/2.0.4.html may possibly
be relevant here. There isn't an obvious mention of PNG on the
http://trac.videolan.org/vlc/timeline?from=10%2F24%2F12&daysback=15
ticket list.'
Comment 1 Sean Amoss (RETIRED) gentoo-dev Security 2012-11-12 23:44:14 UTC
A new issue affecting VLC 2.0.4:

"We have assigned CVE-2012-5855 for this issue in the SHAddToRecentDocs
function in VideoLAN VLC media player 2.0.4:

  http://www.securityfocus.com/archive/1/524626

It is unclear whether there are situations in which the erroneous
string-length calculation could occur without any user interaction."

http://www.openwall.com/lists/oss-security/2012/11/12/3
Comment 2 GLSAMaker/CVETool Bot gentoo-dev 2013-08-31 18:54:20 UTC
CVE-2012-5855 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2012-5855):
  The SHAddToRecentDocs function in VideoLAN VLC media player 2.0.4 and
  earlier might allow user-assisted attackers to cause a denial of service
  (crash) via a crafted file name that triggers an incorrect string-length
  calculation when the file is added to VLC.  NOTE: it is not clear whether
  this issue crosses privilege boundaries or whether it can be exploited
  without user interaction.
Comment 3 Yury German Gentoo Infrastructure gentoo-dev 2014-06-18 00:18:48 UTC
Added to an existing GLSA request.
Comment 4 GLSAMaker/CVETool Bot gentoo-dev 2014-11-05 22:09:50 UTC
This issue was resolved and addressed in
 GLSA 201411-01 at http://security.gentoo.org/glsa/glsa-201411-01.xml
by GLSA coordinator Sean Amoss (ackle).