{"id":"CVE-2019-13962","title":"lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.","summary":"lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.","severity":"critical","cvss":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-125"],"vendor":"videolan","product":"vlc_media_player","affected":["vlc_media_player <= 3.0.7","backports_sle = 15.0","leap = 15.0","leap = 15.1","debian_linux = 9.0","debian_linux = 10.0","ubuntu_linux = 18.04","ubuntu_linux = 19.04"],"published":"2019-07-18","updated":"2026-10-08","sourceUpdated":"2026-10-08T22:16:50.033","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2019-13962","references":[{"url":"http://git.videolan.org/?p=vlc/vlc-3.0.git%3Ba=commit%3Bh=2b4f9d0b0e0861f262c90e9b9b94e7d53b864509","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00005.html","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00037.html","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00040.html","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00081.html","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00036.html","label":"cve@mitre.org"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00046.html","label":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/109306","label":"cve@mitre.org"},{"url":"https://seclists.org/bugtraq/2019/Aug/36","label":"cve@mitre.org"},{"url":"https://security.gentoo.org/glsa/201909-02","label":"cve@mitre.org"},{"url":"https://trac.videolan.org/vlc/ticket/22240","label":"cve@mitre.org"},{"url":"https://usn.ubuntu.com/4131-1/","label":"cve@mitre.org"},{"url":"https://www.debian.org/security/2019/dsa-4504","label":"cve@mitre.org"},{"url":"http://git.videolan.org/?p=vlc/vlc-3.0.git%3Ba=commit%3Bh=2b4f9d0b0e0861f262c90e9b9b94e7d53b864509","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00005.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00037.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00040.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00081.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00036.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00046.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/109306","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://seclists.org/bugtraq/2019/Aug/36","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security.gentoo.org/glsa/201909-02","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://trac.videolan.org/vlc/ticket/22240","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://usn.ubuntu.com/4131-1/","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.debian.org/security/2019/dsa-4504","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.037,"epssPercentile":0.8944,"ingestedAt":"2026-10-08T23:16:47.297Z","slug":"CVE-2019-13962","body":"## Overview\n\nlavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.\n\n## Affected\n\n- `vlc_media_player <= 3.0.7`\n- `backports_sle = 15.0`\n- `leap = 15.0`\n- `leap = 15.1`\n- `debian_linux = 9.0`\n- `debian_linux = 10.0`\n- `ubuntu_linux = 18.04`\n- `ubuntu_linux = 19.04`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":55,"depthScoreParts":{"impact":53.9,"likelihood":0.7,"exploitation":0,"ransomware":0},"changes":[]}