vendor:
RealPlayer
by:
MC
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: RealPlayer
Affected Version From: RealPlayer 10/8
Affected Version To: RealPlayer 10/8
Patch Exists: NO
Related CWE: CVE-2005-0455
CPE: a:realnetworks:realplayer:10.0.12.883
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 2000 SP0-SP4 English, Windows XP PRO SP0-SP1 English
2005
RealNetworks RealPlayer SMIL Buffer Overflow
This module exploits a stack buffer overflow in RealNetworks RealPlayer 10 and 8. By creating a URL link to a malicious SMIL file, a remote attacker could overflow a buffer and execute arbitrary code. When using this module, be sure to set the URIPATH with an extension of '.smil'. This module has been tested with RealPlayer 10 build 6.0.12.883 and RealPlayer 8 build 6.0.9.584.
Mitigation:
No known mitigation or remediation for this vulnerability