← All CVEs

CVE-2008-0984

high · 9.3

The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwrite arbitrary memory and execute arbitrary code via a malformed MP4 file.

9.3
CVSS
15.3%
EPSS (exploit prob.)
97th
EPSS percentile
2008-02-26
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
miromiro_player<= 1.1
videolanvlc_media_player<= 0.8.6d

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-0984