Multiple buffer overflows in RealOne and RealPlayer allow remote malicious users to execute arbitrary code via (1) a Synchronized Multimedia Integration Language (SMIL) file with a long parameter, (2) a long long filename in a rtsp:// request, e.g. from a .m3u file, or (3) certain "Now Playing" options on a downloaded file with a long filename.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
realnetworks realplayer 6.0 |
||
realnetworks realplayer 7.0 |
||
realnetworks realone player 2.0 |
||
realnetworks realplayer |
||
realnetworks realplayer 8.0 |