EIP-2026-116489
PRE-CVEVideoLAN VLC Media Player 2.2.1 - '.mp4' Heap Memory Corruption
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116489. PoCs published by Francis Provencher.
AI-analyzed exploit summary This is a vulnerability writeup describing a heap memory corruption in VLC media player 2.2.1 when parsing malformed MPEG-4 files with invalid STSD atoms. The advisory includes a PoC file link but no actual exploit code.
Description
VideoLAN VLC Media Player 2.2.1 - '.mp4' Heap Memory Corruption
Exploits (1)
exploitdb
WRITEUP
by Francis Provencher · textdoswindows
https://www.exploit-db.com/exploits/39353
This is a vulnerability writeup describing a heap memory corruption in VLC media player 2.2.1 when parsing malformed MPEG-4 files with invalid STSD atoms. The advisory includes a PoC file link but no actual exploit code.
Classification
Writeup 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target:
VLC media player 2.2.1
No auth needed
Prerequisites:
User interaction to open malicious MPEG-4 file
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026