{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[],"affected_systems_content":"<P><SPAN class=\"textit\">VLC</SPAN> versions 0.8.6g et  ant\u00e9rieures.</P>","content":"## Description\n\nVLC int\u00e8gre des versions vuln\u00e9rables de GnuTLS, de libgcrypt\n(CVE-2008-1948, CVE-2008-1949 et CVE-2008-1950) et de libxml2\n(CVE-2007-6284) pour Windows et Mac OS X.\n\nL'exploitation de ces vuln\u00e9rabilit\u00e9s (trait\u00e9es par les avis\nCERTA-2008-AVI-022 et CERTA-2008-AVI-262) permet de r\u00e9aliser un d\u00e9ni de\nservice ou d'ex\u00e9cuter du code arbitraire \u00e0 distance.\n\n## Solution\n\nMettre \u00e0 jour VLC en version 0.8.6h.\n","cves":[{"name":"CVE-2007-6284","url":"https://www.cve.org/CVERecord?id=CVE-2007-6284"},{"name":"CVE-2008-1948","url":"https://www.cve.org/CVERecord?id=CVE-2008-1948"},{"name":"CVE-2008-1949","url":"https://www.cve.org/CVERecord?id=CVE-2008-1949"},{"name":"CVE-2008-1950","url":"https://www.cve.org/CVERecord?id=CVE-2008-1950"}],"links":[{"title":"T\u00e9l\u00e9chargement de VLC :","url":"http://www.videolan.org/vlc/"},{"title":"Avis CERTA-2008-AVI-022 :","url":"http://www.certa.ssi.gouv.fr/site/CERTA-2008-AVI-022/"},{"title":"Avis CERTA-2008-AVI-262 :","url":"http://www.certa.ssi.gouv.fr/site/CERTA-2008-AVI-262/"},{"title":"Notes de changement de version VLC 0.8.6h :","url":"http://wiki.videolan.org/Changelog/0.8.6h"}],"reference":"CERTA-2008-AVI-295","revisions":[{"description":"version initiale.","revision_date":"2008-06-09T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s dans <span class=\"textit\">VLC</span>\npermettent de r\u00e9aliser un d\u00e9ni de service ou d'ex\u00e9cuter du code\narbitraire \u00e0 distance.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans VLC","vendor_advisories":[{"published_at":null,"title":"Notes de version VLC 0.8.6h","url":null}]}
