Vulnerability Name:

CVE-2007-6683 (CCN-39839)

Assigned:2007-12-26
Published:2007-12-26
Updated:2017-09-29
Summary:The browser plugin in VideoLAN VLC 0.8.6d allows remote attackers to overwrite arbitrary files via (1) the :demuxdump-file option in a filename in a playlist, or (2) a EXTVLCOPT statement in an MP3 file, possibly an argument injection vulnerability.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
3.9 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Authentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Athentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
Vulnerability Type:CWE-Other
Vulnerability Consequences:File Manipulation
References:Source: MITRE
Type: CNA
CVE-2007-6683

Source: CCN
Type: vlc-devel Mailing List, Wed Dec 26 15:50:45 CET 2007
Regarding "obscure" security problem

Source: MLIST
Type: Exploit
[vlc-devel] 20071226 Regarding "obscure" security problem

Source: OSVDB
Type: UNKNOWN
42205

Source: OSVDB
Type: UNKNOWN
42206

Source: SECUNIA
Type: UNKNOWN
29284

Source: SECUNIA
Type: UNKNOWN
29766

Source: CCN
Type: VideoLAN Web site
Changes between 0.8.6c and 0.8.6d

Source: DEBIAN
Type: UNKNOWN
DSA-1543

Source: DEBIAN
Type: DSA-1543
vlc -- several vulnerabilities

Source: CCN
Type: GLSA-200803-13
VLC: Multiple vulnerabilities

Source: GENTOO
Type: UNKNOWN
GLSA-200803-13

Source: CCN
Type: OSVDB ID: 42205
VLC Media Player Browser Plug-in Playlist Filename :demuxdump-file Option Arbitrary File Overwrite

Source: CCN
Type: OSVDB ID: 42206
VLC Media Player Browser Plug-in MP3 File EXTVLCOPT Statement Arbitrary File Overwrite

Source: BID
Type: UNKNOWN
28712

Source: CCN
Type: BID-28712
VLC Media Player Browser Plugin Arbitrary File Overwrite Vulnerability

Source: XF
Type: UNKNOWN
vlcmediaplayer-browser-plugin-file-overwrite(39839)

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:14619

Source: CONFIRM
Type: UNKNOWN
https://trac.videolan.org/vlc/changeset/23197

Source: CCN
Type: Ticket #1371
#1371 (Security issue: browser plugins input) - VLC - Trac

Source: CONFIRM
Type: UNKNOWN
https://trac.videolan.org/vlc/ticket/1371

Vulnerable Configuration:Configuration 1:
  • cpe:/a:videolan:vlc:0.8.6d:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:videolan:vlc_media_player:0.8.6d:*:*:*:*:*:*:*
  • AND
  • cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Vulnerability Name:

    CVE-2007-6683 (CCN-39843)

    Assigned:2007-11-20
    Published:2007-11-20
    Updated:2017-09-29
    Summary:The browser plugin in VideoLAN VLC 0.8.6d allows remote attackers to overwrite arbitrary files via (1) the :demuxdump-file option in a filename in a playlist, or (2) a EXTVLCOPT statement in an MP3 file, possibly an argument injection vulnerability.
    CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
    Exploitability Metrics:Attack Vector (AV): Network
    Attack Complexity (AC): Low
    Privileges Required (PR): None
    User Interaction (UI): None
    Scope:Scope (S): Unchanged
    Impact Metrics:Confidentiality (C): None
    Integrity (I): Low
    Availibility (A): None
    CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
    3.9 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Authentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
    3.4 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Athentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    Vulnerability Type:CWE-Other
    Vulnerability Consequences:File Manipulation
    References:Source: MITRE
    Type: CNA
    CVE-2007-6683

    Source: CCN
    Type: vlc-devel Mailing List, Wed Dec 26 15:50:45 CET 2007
    Regarding "obscure" security problem

    Source: CCN
    Type: VideoLAN Web site
    Changes between 0.8.6c and 0.8.6d

    Source: DEBIAN
    Type: DSA-1543
    vlc -- several vulnerabilities

    Source: CCN
    Type: GLSA-200803-13
    VLC: Multiple vulnerabilities

    Source: CCN
    Type: OSVDB ID: 42205
    VLC Media Player Browser Plug-in Playlist Filename :demuxdump-file Option Arbitrary File Overwrite

    Source: CCN
    Type: OSVDB ID: 42206
    VLC Media Player Browser Plug-in MP3 File EXTVLCOPT Statement Arbitrary File Overwrite

    Source: CCN
    Type: BID-28712
    VLC Media Player Browser Plugin Arbitrary File Overwrite Vulnerability

    Source: XF
    Type: UNKNOWN
    vlcmediaplayer-plugin-mp3-file-overwrite(39843)

    Source: CCN
    Type: Changeset 23197
    Changeset 23197 - VLC - Trac

    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.mitre.oval:def:7830
    P
    DSA-1543 vlc -- several vulnerabilities
    2014-06-23
    oval:org.mitre.oval:def:18478
    P
    DSA-1543-1 vlc - several vulnerabilities
    2014-06-23
    oval:org.mitre.oval:def:14619
    V
    The browser plugin in VideoLAN VLC 0.8.6d allows remote attackers to overwrite arbitrary files
    2012-11-19
    oval:org.debian:def:1543
    V
    several vulnerabilities
    2008-04-09
    BACK
    videolan vlc 0.8.6d
    videolan vlc media player 0.8.6d
    gentoo linux *
    debian debian linux 3.1
    debian debian linux 4.0