Candidate: CVE-2012-1776 PublicDate: 2012-03-19 16:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1776 http://www.videolan.org/security/sa1202.html Description: Multiple heap-based buffer overflows in VideoLAN VLC media player before 2.0.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Real RTSP stream. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_vlc: upstream_vlc: released (2.0.1) hardy_vlc: ignored (reached end-of-life) lucid_vlc: ignored (reached end-of-life) maverick_vlc: ignored (reached end-of-life) natty_vlc: ignored (reached end-of-life) oneiric_vlc: ignored (reached end-of-life) precise_vlc: not-affected (2.0.1-4) quantal_vlc: not-affected (2.0.1-4) raring_vlc: not-affected (2.0.1-4) saucy_vlc: not-affected (2.0.1-4) devel_vlc: not-affected (2.0.1-4)