Page 1 of 1

serious security issue with subtitiles

Posted: 24 May 2017 12:36
by Tnt80
Today I have read ( https://www.helpnetsecurity.com/2017/05 ... itle-hack/ ) that VLC, Kodi, PopcornTime and many others has a security issue with subtitles that can allow some other user to take the control of the equipment where this programs where running, using the subtitles.
I've search the web and the forum to see if someone has warning it here somewhere, but I couldn't find anything, so I left the information here with the hope someone warns the development team in case they still doesn't know.

Re: serious security issue with subtitiles

Posted: 24 May 2017 12:44
by yshdmt
"VLC’s VideoLAN addressed the issue as well, and doesn’t expect that it is still exploitable.

“The VLC bug is not exploitable. The first big issue was fixed in 2.2.5. There are 2 other small issues, that will be fixed in 2.2.6,” VideoLAN informed us."