Advertisement
Sections
VideoLAN clarifies VLC isn't vulnerable; issues were already fixed in older update
The security issue was present on an older version of VLC because of a third-party library.

Update: Earlier, we had reported that popular media player VLC had a critical security issue that made it vulnerable for hackers to remotely control some aspects of the victim's machine. However, VideoLAN says that VLC isn't vulnerable currently and the issue was present because of a third-party library (called libebml) that was fixed 16 months ago. The current 3.0.3 or later version of VLC doesn't have the security issue and the vulnerability claim was based off on an older version.VideoLAN took to Twitter to address the security concern. If you're running the latest version of VLC (3.0.7.1) then you don't need to worry about anything.Original story:VLC Media Player is a highly popular and free media player that's been available for a long time. Since VLC is open-source software, it is easily accessible to everyone but it turns out that there is a huge security flaw in it. According to WinFuture, German security agency CERT-Bund has found a flaw in VLC that has a vulnerability score of 9.8 making it a "critical" problem. In simple words, because of this app, hackers can install, modify, or run software on your device that too without your authorisation.[caption id="attachment_5875991" align="alignnone" width="1024"]![VLC AirPlay support]()

VLC AirPlay support[/caption]As per a Gizmodo report, no one has yet been affected because of it. But this does not mean, that there are not potentially vulnerable systems that can be affected anytime.(Also read: Google takes down seven Russian spying apps from its Play Store)VideoLAN is probably working on rectifying the flaw already. This means you still have to wait until the company releases an update. Hence, a safer option would be to switch to an alternative like Media Player Classic, MX Player, KM Player and so on.
First Published:Jul 24, 2019, 21:50:45 IST
Advertisement
Advertisement

Why AI notetakers are raising serious privacy and security concerns
AI notetakers promise effortless meeting summaries, but experts warn they could expose confidential conversations, corporate secrets and personal voiceprints. As businesses increasingly adopt AI-powered meeting assistants, questions over data storage, privacy, consent and legal risks are becoming impossible to ignore
5 min read
China's low-cost AI models are changing the global AI race. Here's why Silicon Valley is worried
As Chinese firms continue to improve performance while keeping prices low, the AI race is no longer just about building the smartest model—it is increasingly becoming a battle over who can deliver the best value
2 min read
China's Kimi K3 challenges US AI leaders with frontier-level performance at lower cost
Chinese artificial intelligence startup Moonshot AI has unveiled its latest open-weight AI model, Kimi K3, with early results suggesting it could compete with some of the world's most advanced AI systems developed by leading US companies
2 min read
How did Instagram run ads promoting child abuse in India?
India has issued a notice to Meta after an investigation alleged that Instagram displayed paid advertisements promoting child sexual abuse material. MeitY ordered Meta to remove such Instagram ads and explain within seven days how they were approved
8 min read
Why has India halted WhatsApp’s username feature before launch?
India has halted WhatsApp’s planned username feature, citing concerns about cybercrime, impersonation, and law enforcement challenges. As Meta races to address security concerns, here’s why MeitY has paused the rollout, what the feature does, and how it could influence privacy and online safety in India
3 min read
Advertisement
Advertisement
