Heap-based buffer overflow in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted byte stream in an RTMP session.Referenceshttp://www.videolan.org/security/sa1003.htmlhttp://openwall.com/lists/oss-security/2010/04/28/4