Untrusted search path vulnerability in VideoLAN VLC before 0.9.0 allows local users to execute arbitrary code via a malicious library under the modules/ or plugins/ subdirectories of the current working directory.
https://exchange.xforce.ibmcloud.com/vulnerabilities/42377
http://trac.videolan.org/vlc/ticket/1578
http://security.gentoo.org/glsa/glsa-200807-13.xml
http://secunia.com/advisories/31317
http://git.videolan.org/?p=vlc.git%3Ba=commit%3Bh=c7cef4fdd8dd72ce0a45be3cda8ba98df5e83181