Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
UBUNTU-CVE-2019-5459
See a problem?
Please try reporting it
to the source
first.
Source
https://ubuntu.com/security/CVE-2019-5459
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-5459.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2019-5459
Upstream
CVE-2019-5459
Published
2019-07-30T21:15:00Z
Modified
2025-07-14T06:45:14.516510Z
Severity
7.1 (High)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
CVSS Calculator
- medium
Summary
[none]
Details
An Integer underflow in VLC Media Player versions < 3.0.7 leads to an out-of-band read.
References
https://ubuntu.com/security/CVE-2019-5459
https://hackerone.com/reports/502816
https://www.cve.org/CVERecord?id=CVE-2019-5459
Affected packages
Ubuntu:Pro:14.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.7-8+deb8u3ubuntu0.1~esm1?arch=source&distro=esm-infra-legacy/trusty
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.7-8
2.7-8+deb7u1build0.14.04.1
2.7-8+deb8u3build0.14.04.1~esm1
2.7-8+deb8u3ubuntu0.1~esm1
Ubuntu:Pro:16.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.8.0~cvs20150510-1ubuntu0.1+esm1?arch=source&distro=esm-apps/xenial
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.8.0~cvs20150510-1
2.8.0~cvs20150510-1ubuntu0.1
2.8.0~cvs20150510-1ubuntu0.1+esm1
Ubuntu:Pro:18.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.8.8-1ubuntu0.1~esm1?arch=source&distro=esm-apps/bionic
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.8.1-2
2.8.5-1
2.8.6-1
2.8.8-1
2.8.8-1ubuntu0.1~esm1
Ubuntu:Pro:20.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.9.1-1ubuntu0.1?arch=source&distro=esm-apps/focal
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.8.8-3.2
2.9.0-1
2.9.1-1
2.9.1-1ubuntu0.1
Ubuntu:22.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.10.0-2?arch=source&distro=jammy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.10.0-1
2.10.0-2
Ubuntu:24.04:LTS
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.11.1-1build1?arch=source&distro=noble
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.10.1-1
2.11.1-1
2.11.1-1build1
Ubuntu:25.04
/
faad2
Package
Name
faad2
Purl
pkg:deb/ubuntu/faad2@2.11.2-1?arch=source&distro=plucky
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
2.*
2.11.1-1build1
2.11.2-1
UBUNTU-CVE-2019-5459 - OSV