EIP-2026-119253
PRE-CVEVideoLAN VLC Media Player 0.8.6f - 'smb://' URI Handling Remote Buffer Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119253. PoCs published by Pankaj Kohli.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in VLC Media Player 0.8.6f by crafting a malicious XSPF playlist file with an overly long 'smb://' URI. The exploit overwrites the return address with a 'jmp esp' instruction from user32.dll and includes ASCII shellcode to execute arbitrary code.
Description
VideoLAN VLC Media Player 0.8.6f - 'smb://' URI Handling Remote Buffer Overflow
Exploits (1)
This exploit targets a buffer overflow vulnerability in VLC Media Player 0.8.6f by crafting a malicious XSPF playlist file with an overly long 'smb://' URI. The exploit overwrites the return address with a 'jmp esp' instruction from user32.dll and includes ASCII shellcode to execute arbitrary code.