avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "libvlc5-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "libvlccore7": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-notify-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-nox": "2.1.6-0ubuntu14.04.5+esm1", "vlc-nox-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-fluidsynth": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-fluidsynth-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-data": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-zvbi-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "libvlccore-dev-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-pulse-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "libvlc-dev": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-sdl-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-pulse": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-zvbi": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-sdl": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-jack": "2.1.6-0ubuntu14.04.5+esm1", "libvlc5": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-svg": "2.1.6-0ubuntu14.04.5+esm1", "libvlc-dev-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-dbg": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-jack-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-notify": "2.1.6-0ubuntu14.04.5+esm1", "libvlccore-dev": "2.1.6-0ubuntu14.04.5+esm1", "libvlccore7-dbgsym": "2.1.6-0ubuntu14.04.5+esm1", "vlc-plugin-svg-dbgsym": "2.1.6-0ubuntu14.04.5+esm1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libvlc5-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-sdl-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-notify-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-zvbi": "2.2.2-5ubuntu0.16.04.3", "vlc-nox": "2.2.2-5ubuntu0.16.04.3", "vlc-nox-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-fluidsynth": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-fluidsynth-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-sdl": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-jack": "2.2.2-5ubuntu0.16.04.3", "libvlc5": "2.2.2-5ubuntu0.16.04.3", "vlc-data": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-samba-dbgsym": "2.2.2-5ubuntu0.16.04.3", "libvlccore8": "2.2.2-5ubuntu0.16.04.3", "libvlccore8-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-svg": "2.2.2-5ubuntu0.16.04.3", "vlc-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-zvbi-dbgsym": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-jack-dbgsym": "2.2.2-5ubuntu0.16.04.3", "libvlc-dev": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-samba": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-notify": "2.2.2-5ubuntu0.16.04.3", "libvlccore-dev": "2.2.2-5ubuntu0.16.04.3", "vlc-plugin-svg-dbgsym": "2.2.2-5ubuntu0.16.04.3" } ] }