CVE-2014-1684: Videolan Vlc Media Player
Medium severity, CVSS 4.3. EPSS: 5.2% chance of exploitation in the next 30 days.
The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Player before 2.1.3 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a zero minimum and maximum data packet size in an ASF file.
Affected products
- Videolan Vlc Media Player: up to and including 2.1.2; version 1.0.0 only; version 1.0.1 only; version 1.0.2 only; version 1.0.3 only; version 1.0.4 only; …
Published 2014-03-03. Last modified 2026-06-17.