CVE-2007-6681

Exp

Stack-based buffer overflow in modules/demux/subtitle.c in VideoLAN VLC 0.8.6d allows remote attackers to execute arbitrary code via a long subtitle in a (1) MicroDvd, (2) SSA, and (3) Vplayer file.

Published: 2008-01-16 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2007-6681 is rated High Exploit Risk (73.9/100): CVSS High severity, with high exploitation likelihood (EPSS 17.36%, 97th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2007-6681

EDB-ID Source Kind Published Link
5498 exploit_db edb 2008-04-25 Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2007-6681

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 39.04% 17.36% -21.69%
2 2026-04-03 37.65% 39.04% +1.40%
3 2025-12-02 37.65%

Full EPSS history (12 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2007-6681

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
7.5 2.0 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:P)
Partial confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:P)
Partial availability impact.
10.0 6.4 [email protected]

Weakness enumeration for CVE-2007-6681

OS Trackers for CVE-2007-6681

vendor priority summary link
debian low CVE-2007-6681 low priority: Debian including 1 source packages (vlc), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. https://security-tracker.debian.org/tracker/CVE-2007-6681
gentoo normal CVE-2007-6681: 2 GLSA(s) (200803-13, 200804-25), 1 atom(s) (media-video/vlc); latest impact normal. https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2007-6681
ubuntu medium CVE-2007-6681 medium priority: Ubuntu including 1 source packages (vlc), 9 status rows across 9 suites (dapper, edgy, feisty, gutsy, hardy, intrepid, jaunty, karmic, upstream): released 5, ignored 4. https://ubuntu.com/security/CVE-2007-6681

Affected software / configurations for CVE-2007-6681

Vendor Product Version Raw CPE
videolan vlc <= 0.8.6d cpe:2.3:a:videolan:vlc:*:*:*:*:*:*:*:*

References for CVE-2007-6681

URL Tags
http://aluigi.altervista.org/adv/vlcboffs-adv.txt
http://mailman.videolan.org/pipermail/vlc-devel/2007-June/032672.html
http://mailman.videolan.org/pipermail/vlc-devel/2007-June/033394.html
http://osvdb.org/42207
http://secunia.com/advisories/28233
http://secunia.com/advisories/29284
http://secunia.com/advisories/29766
http://secunia.com/advisories/29800
http://security.gentoo.org/glsa/glsa-200804-25.xml
http://securityreason.com/securityalert/3550
http://wiki.videolan.org/Changelog/0.8.6f
http://www.debian.org/security/2008/dsa-1543
http://www.gentoo.org/security/en/glsa/glsa-200803-13.xml
http://www.securityfocus.com/archive/1/485488/30/0/threaded
http://www.securityfocus.com/bid/27015
http://www.videolan.org/security/sa0801.php
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14334
https://www.exploit-db.com/exploits/5667
cvelogic Threat Intelligence