Forum Thread: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !

You are currently viewing a forum thread in the Secunia Community Forum. Please note that opinions expressed here are not of Secunia but solely reflect those of the user who wrote it.

This thread was submitted in the following forum:
Programs

Relating to this vendor:
VideoLAN
And, this specific program:
VLC Media Player 2.x

This thread has been marked as resolved.
klausus02 PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Member 29th Jul, 2014 12:12
Ranking: 89
Posts: 144
User Since: 4th Feb, 2011
System Score: N/A
Location: DE
Last edited on 29th Jul, 2014 12:14

@Maurice

As stated in
https://secunia.com/community/forum/thread/show/15...

it is not realy shure whether vlc 2.1.3 is insecure or not. But carefully reading SA59285 suggests that vlc 2.1.4 is insecure. And the same should be valid for vlc 2.1.4 (64-bit) .

Since 2014-06-27 SA59285 is fixed and Secunia is suggests to update to vendor solution vlc 2.1.5.

@Secuina Official
Why are all versions vlc .2.1.4 and prior (including 64-bit !) still marked as secure??

regard Klaus


Post "RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !" has been selected as an answer.
Maurice Joyce RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Handling Contributor 29th Jul, 2014 14:19
Score: 12325
Posts: 9,575
User Since: 4th Jan 2009
System Score: N/A
Location: UK
Last edited on 29th Jul, 2014 14:22
Klaus,
I noticed that as well. I left VLC 2.1.4 on the PC after my last tests with you. I completed two full PSI scans & v 2.1.4 showed as fully patched & secure. That does not tally with this:

https://secunia.com/advisories/59285/

I do not use VLC so uninstalled it but I am a lost on the true status given the PSI results.

I would contact Secunia Support & ask them what is going on.

EDIT - VLC was installed on Windows 8.1.1 64Bit for the tests.

--
Maurice

Microsoft Surface 4 Intel i7 64Bit
Windows 10 Pro version 1809 Build 17763.404
16 GB RAM
IE & Edge Only
Was this reply relevant?
+0
-0
klausus02 RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Member 29th Jul, 2014 18:11
Score: 89
Posts: 144
User Since: 4th Feb 2011
System Score: N/A
Location: DE
Thanks Maurice for your advice.

I just contacted Secunia support for illumination.

Hope they will reply soon.

regards
Klaus
Was this reply relevant?
+0
-0
klausus02 RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Member 30th Jul, 2014 10:19
Score: 89
Posts: 144
User Since: 4th Feb 2011
System Score: N/A
Location: DE
Maurice,

I just run a scan. And now, PSI2 shows vlc 2.1.4 (64-bit) as insecure !

So far so ok. Now I have to wait for vlc 2.1.5 (64-bit) which isn't deployed yet...

regards
Klaus
Was this reply relevant?
+0
-0
Maurice Joyce RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Handling Contributor 30th Jul, 2014 12:12
Score: 12325
Posts: 9,575
User Since: 4th Jan 2009
System Score: N/A
Location: UK
Thank you for the update - getting better by the minute!

--
Maurice

Microsoft Surface 4 Intel i7 64Bit
Windows 10 Pro version 1809 Build 17763.404
16 GB RAM
IE & Edge Only
Was this reply relevant?
+0
-0
klausus02 RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Member 31st Jul, 2014 11:08
Score: 89
Posts: 144
User Since: 4th Feb 2011
System Score: N/A
Location: DE
Yesterday VLC 2.1.5 (64-bit) was released. And PSI 2 shows VLC 2.1.5 (64-bit) as secure!

So, everything seems to be ok.

regards
Klaus
Was this reply relevant?
+0
-0
Maurice Joyce RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Handling Contributor 31st Jul, 2014 11:18
Score: 12325
Posts: 9,575
User Since: 4th Jan 2009
System Score: N/A
Location: UK
Last edited on 31st Jul, 2014 13:15
Looks like good news at last. Not so sure about your entry on the other Secunia Thread - it will be a miracle if they respond.

I think I am correct in stating that the version you need clarification on was subject to a bit of pig wrestling between Secunia & the Vendor. Everyone appeared to get extremely dirty but nothing changed!

--
Maurice

Microsoft Surface 4 Intel i7 64Bit
Windows 10 Pro version 1809 Build 17763.404
16 GB RAM
IE & Edge Only
Was this reply relevant?
+3
-0
klausus02 RE: PSI 2 shows VLC 2.1.4 (64-bit) marked as patched despite SA59285 !
Member 2nd Aug, 2014 10:51
Score: 89
Posts: 144
User Since: 4th Feb 2011
System Score: N/A
Location: DE
Last edited on 2nd Aug, 2014 10:53
on 31st Jul, 2014 11:18, Maurice Joyce wrote:
Looks like good news at last. Not so sure about your entry on the other Secunia Thread - it will be a miracle if they respond.

I agree.

on 31st Jul, 2014 11:18, Maurice Joyce wrote:
I think I am correct in stating that the version you need clarification on was subject to a bit of pig wrestling between Secunia & the Vendor. Everyone appeared to get extremely dirty but nothing changed!

I expected Secunia to be superior. But unfortunately ...
Was this reply relevant?
+0
-0

This thread has been marked as locked.