Update 12.37 BST: VideoLAN pointed ZDNet towards a Twitter feed in response, saying that "there is no security issue in [the] last version of VLC," and instead, a mistake from MITRE and CERT_BUND is ...
So, VLC core developer Rémi Denis-Courmont (and Nokia employee - oooh, conspiracy theory!) has managed to get the iPad version of VLC pulled from the app store. A (recently shortened) line from him ...