Integer overflow in pnen3260.dll in RealPlayer 8 up to and including 10.5 (6.0.12.1040) and previous versions, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote malicious users to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
realnetworks helix player 1.0 |
||
realnetworks realone player 1.0 |
||
realnetworks realone player 2.0 |
||
realnetworks realplayer 10.0 |
||
realnetworks realplayer 10.5 |
||
realnetworks realplayer 10.5_6.0.12.1016 |
||
realnetworks realplayer 8.0 |
||
realnetworks realone player 9.0.0.288 |
||
realnetworks realplayer - |
||
realnetworks realplayer 10.0_6.0.12.690 |
||
realnetworks realplayer 10.5_6.0.12.1040 |
||
realnetworks realone player 9.0.0.297 |