vendor:
RealPlayer
by:
Gabor Seljan
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: RealPlayer
Affected Version From: 16.0.3.51
Affected Version To: 16.0.2.32
Patch Exists: NO
Related CWE: CVE-2013-7260
CPE: a:realnetworks:realplayer:16.0.3.51
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2/SP3 (DEP Bypass)
2013
RealNetworks RealPlayer Version Attribute Buffer Overflow
RealNetworks RealPlayer is prone to a buffer overflow vulnerability when handling a specially crafted .rmp file. An attacker can exploit this vulnerability to execute arbitrary code in the context of the application. Successful exploitation requires the user to open the malicious file via the application's menu or by clicking on it. This vulnerability affects RealNetworks RealPlayer versions 16.0.3.51 and 16.0.2.32.
Mitigation:
No known mitigation or remediation is available for this vulnerability.