VLC: User-assisted execution of arbitrary code Multiple vulnerabilities were found in VLC, allowing for the execution of arbitrary code. vlc 2008-04-23 2008-04-23 214277 214627 remote 0.8.6f 0.8.6f

VLC is a cross-platform media player and streaming server.

Multiple vulnerabilities were found in VLC:

A remote attacker could entice a user to open a specially crafted media file or stream, possibly resulting in the remote execution of arbitrary code.

There is no known workaround at this time.

All VLC users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=media-video/vlc-0.8.6f"
CVE-2007-6681 CVE-2008-0073 CVE-2008-1489 CVE-2008-1768 CVE-2008-1769 CVE-2008-1881 GLSA 200803-13 rbu rbu rbu