CVE-2008-2147

Publication date 12 May 2008

Last updated 24 July 2024


Ubuntu priority

Description

Untrusted search path vulnerability in VideoLAN VLC before 0.9.0 allows local users to execute arbitrary code via a malicious library under the modules/ or plugins/ subdirectories of the current working directory.

Status

Package Ubuntu Release Status
vlc 9.10 karmic
Fixed 0.8.6.release.e+zdebian-2.3ubuntu1
9.04 jaunty
Fixed 0.8.6.release.e+zdebian-2.3ubuntu1
8.10 intrepid
Fixed 0.8.6.release.e+zdebian-2.3ubuntu1
8.04 LTS hardy
Fixed 0.8.6.release.e+x264svn20071224+faad2.6.1-0ubuntu3.1
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.06 LTS dapper Ignored end of life