vendor:
RealPlayer
by:
Shahin and info from Abysssec
7,5
CVSS
HIGH
Integer Overflow
190
CWE
Product Name: RealPlayer
Affected Version From: RealPlayer SP 1.1.4
Affected Version To: RealPlayer SP 1.1.4
Patch Exists: Yes
Related CWE: CVE-2010-3000
CPE: a:realnetworks:realplayer:1.1.4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2010
RealPlayer FLV Parsing Multiple Integer Overflow
RealPlayer SP 1.1.4 is vulnerable to an Integer Overflow vulnerability. This vulnerability can be exploited by a maliciously crafted FLV file. When the file is opened, the application crashes due to the overflow. This vulnerability is tracked as CVE-2010-3000.
Mitigation:
Upgrade to the latest version of RealPlayer SP 1.1.4