venerdì 26 aprile 2024 23:58mobile   |   3dfxzone.it   |   amdzone.it   |   atizone.it   |   forumzone.it   |   hwsetup.it   |   nvidiazone.it   |   unixzone.it 
  ATIZONE.IT
  proudly powered by 3dfxzone.it
Home    |    News    |    Headlines    |    Articoli    |    Download    |    Community    |    Condividi    |    Contatti    |    Tag    |    Ricerca    |    Sitemap
 
Pubblicità Informazioni e Release Notes del file: VLC Media Player 3.0.7 Ultime News
Condividi su Facebook Condividi su Twitter Condividi su WhatsApp Condividi su reddit

We just released VLC 3.0.7, a minor update of VLC branch 3.0.x. This release is a bit special, because it has more security issues fixed than any other version of VLC.

This high number of security issues is due to the sponsoring of a bug bounty program funded by the European Commission, during the FOSSA program.

Severity

According to our scale, we have had 33 valid security issues fixed thanks to this program:

  • 2 high security issues, (only one was present in 3.0.x),
  • 21 medium security issues,
  • 20 low security issues.

The 2 more important issues are an Out-of-Bound Write and a Stack Buffer Overflow.

the Out-of-Bound Write is not in the VLC codebase, but in a dependency of VLC, the faad2 library, unmaintained, unfortunately.

the Stack Buffer Overflow is a VLC 4.0-only issue in the new RIST module, and is therefore not impacting actual release of VLC.

The medium security issues are mostly out-of-band reads, heap overflows, NULL-dereference and use-after-free security issues. Those issues should not be exploitable with ASLR, but are important anyway, because they can crash VLC.

The low security issues are mostly integer overflow, division by zero, and other out-of-band reads with no actual impact. Those issues are not exploitable.

26.04.2024  
AMD rilascia il driver video AMD Radeon Software Adrenalin Edition 24.4.1
Disponibile Ubuntu 24.04 LTS come Desktop e Server image, e Netboot tarball
Total Uninstall Pro 7.6.1 consente la manutenzione del PC e supporta Windows 11
25.04.2024  
Benchmark & Stability Testing: Prime95 30.19 build 14 - Windows, Linux, BSD, Mac
Qualcomm annuncia la piattaforma Snapdragon X Plus per i notebook AI ecologici
Open Source Multi-track Audio Editing & Recording Tools: Audacity 3.5.1
24.04.2024  
AMD prepara il lancio dei processori AM5 EPYC 4004 per cloud e data center
Gaming & Retrogaming Utilities: MAME (Multiple Arcade Machine Emulator) 0.265
WinToUSB 8.8 consente di installare Windows su un drive USB esterno
Windows Tweaking & Tuning Utilities: Windows 10 Manager 3.9.4 - Bug fixing
23.04.2024  
AMD potrebbe utilizzare ancora memoria GDDR6 per le prime Radeon RX 8000
GeForce Setup & Tweaking Utilities: NVIDIA GeForce Experience 3.28.0.412
Video Capture & Screenshots Utilities: HyperSnap 9.5.0 - WEBP images Ready
Free Antivirus & Antimalware Utilities: Trellix Stinger 13.0.0.105 [Portable]
22.04.2024  
GALAX lancia la video card GeForce RTX 4060 low-profile con PCB e cooler bianchi
Incrementa la sicurezza di Windows 11 con Windows Firewall Control 6.11.0
Video & GPU - Monitoring & Setup & Tuning Tools: ColorControl 9.9.0.1
Display Driver Uninstaller 18.0.7.6 rimuove i driver GPU di AMD, Intel e NVIDIA
21.04.2024  
Intel rilascio il driver video Arc & Iris Xe Graphics Driver 31.0.101.5444
Privacy Eraser 6.6.0 protegge la privacy degli utenti di Microsoft Windows
Indice delle news 
Ultimi File
AMD Radeon Software Adrenalin Edition 24.4.1
GPU-Z 2.59.0
ASUS GPU Tweak III 1.7.6.1
MechWarrior 5: Clans GDC Demo Trailer
GPU Shark 2.2.0.0 [Portable]
Outpost: Infinity Siege - Official Trailer - "From destruction, we shall return"
AMD Radeon Software Adrenalin Edition 24.3.1
Battlefield 2042 | Season 7: Turning Point Gameplay Screenshots
Battlefield 2042 | Season 7: Turning Point Gameplay Trailer
AMD Radeon Software Adrenalin Edition 24.2.1
Indice dei file 
3dfxzone.it   ][   amdzone.it   ][   atizone.it   ][   forumzone.it   ][   hwsetup.it   ][   nvidiazone.it   ][   unixzone.it   ][   links   ][   feed rss   ][   chi siamo   ][   sitemap
ATIZone.it è servito da una applicazione proprietaria di cui è vietata la riproduzione parziale o totale (layout e/o logica). I marchi e le sigle in esso citate sono proprietà degli aventi diritto. Note Legali. Privacy.