CVE-2019-13615 log

Source
Severity Medium
Remote Yes
Type Information disclosure
Description
Not an issue in vlc, the issue was in libebml and was fixed in 1.3.6.
Group Package Affected Fixed Severity Status Ticket
AVG-1008 vlc 3.0.7.1-2 Medium Not affected
References
https://trac.videolan.org/vlc/ticket/22474
Notes
Initial description was: A heap-based out-of-bounds read has been found in the mkv::demux_sys_t::FreeUnused() function of VLC <= 3.0.7.1.