CVE-2019-13962EPSS p89.5%
CVE-2019-13962CVE-2019-13962
videolan / vlc_media_player
Description
lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 3.70% probability of exploitation · percentile 89.5% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-08 |