vendor:
RealServer
by:
bow@bow.net
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: RealServer
Affected Version From: RealServer 5.0
Affected Version To: RealServer 5.0
Patch Exists: NO
Related CWE: Unknown
CPE: a:realnetworks:realserver:5.0
Platforms Tested: FreeBSD-2.1.x
Unknown
Crash RealServer 5.0 with long ramgen request
This exploit crashes a RealMedia 5.0 server by sending a very long ramgen request. It sends a GET request with a payload of 4082+ bytes, causing the server to crash. Regular functionality can be restored by restarting the RealServer software.
Mitigation:
Restart the RealServer software to restore regular functionality.