Return to site

Vlc player for mac 2015

broken image
broken image
broken image

ASLR and DEP help reduce the likelyness of code execution, but may be bypassed. While these issues in themselves are most likely to just crash the player, we can't exclude that they could be combined to leak user informations or remotely execute code.

broken image

If successful, a malicious third party could trigger either a crash of VLC or an arbitratry code execution with the privileges of the target user.