VLC Player contains a security vulnerability that makes it subject to remote hijacks. Hackers are able to use subtitle files to cause a buffer overflow, allowing them to execute their own code on the victim’s machine. There is no stable fix available as of this writing, however the VLC Player nightly builds are reported to be patched.
VLC Player is a popular cross-platform media player that is able to play almost any type of video file.

