I have been writing about the vulnerabilities seen in Internet Explorer and Windows 7 and today I will be talking about one of the most threatened vulnerabilities which has been visualized on VLC Media Player. As we know that VLC is one of the mostly used open source tool for watching videos on Windows and Linux computers. If I am not wrong then this tool is used even more than Windows Media Player as it has got huge number of codecs inside this and moreover this application is very light, so most of the users prefer to use this user-friendly and a very light tool for playing various videos on their system.
Vulnerability has been detected in playing the .MKV files in this tool. There has been some problem in validating the input file with .MKV format and that is the reason due to which attackers may create the malicious MKV files in order to attack the users system.
If you are quite conscious about the attack then I will suggest you to delete the ‘libmkv_plugin.dll’ file as then your tool will never be able to play any .MKV file thus it will prevent all the attacks from the malicious .MKV file. The new version 1.1.7 is out which fixes this vulnerability, please update it asap to avoid getting attacked by vulnerable MKV file method. If you can’t update for some reasons, you can manually delete the file libmkv_plugin.dll to avoid any attack. Note that after you delete this file, you may not be able to play MKV files on your computer.
This vulnerability was reported on 26th January, 2011 but then it was quite late. So, no initiative was taken regarding this problem and the version was released but it seems that they have worked on this problem and they have already released the new version.
We will keep you updated with any new changes found related to this new vulnerability found in VLC or any other topic which is related to it and anyhow if you get to know anything related to the news topics mentioned above then please do not hesitate to share it with us, just put it down in the comments section and if we found it genuine then we will be sharing that piece of information with all the other readers on your behalf, so keep searching something useful and then let us know about it. Till then keep reading, have safe computing.