CVE-2007-6681

VLC 0.8.6d - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in modules/demux/subtitle.c in VideoLAN VLC 0.8.6d allows remote attackers to execute arbitrary code via a long subtitle in a (1) MicroDvd, (2) SSA, and (3) Vplayer file.

Exploits (2)

exploitdb WORKING POC VERIFIED
by j0rgan · pythonlocalwindows
https://www.exploit-db.com/exploits/5667
exploitdb WORKING POC
pythonlocalwindows
https://www.exploit-db.com/exploits/5498

Scores

EPSS 0.3765
EPSS Percentile 97.1%

Classification

CWE
CWE-119
Status draft

Affected Products (1)

videolan/vlc < 0.8.6d

Timeline

Published Jan 17, 2008
Tracked Since Feb 18, 2026