9.3
CVSSv2

CVE-2011-1525

Published: 06/04/2011 Updated: 09/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in rvrender.dll in RealNetworks RealPlayer 11.0 up to and including 11.1 and 14.0.0 up to and including 14.0.2, and RealPlayer SP 1.0 up to and including 1.1.5, allows remote malicious users to execute arbitrary code via a crafted frame in an Internet Video Recording (IVR) file.

Vulnerable Product Search on Vulmon Subscribe to Product

realnetworks realplayer 14.0.1.609

realnetworks realplayer

realnetworks realplayer 11.0.1

realnetworks realplayer 11.0.2

realnetworks realplayer 12.0.0.1548

realnetworks realplayer 8

realnetworks realplayer 11.0

realnetworks realplayer 10.0

realnetworks realplayer 11.0.2.2315

realnetworks realplayer 11.0.2.1744

realnetworks realplayer 11.1.3

realnetworks realplayer 11_build_6.0.14.748

realnetworks realplayer 12.0.0.1444

realnetworks realplayer 14.0.1

realnetworks realplayer 11.0.3

realnetworks realplayer 11.0.4

realnetworks realplayer 7

realnetworks realplayer 6

realnetworks realplayer 14.0.0

realnetworks realplayer 11.1

realnetworks realplayer 11.0.5

realnetworks realplayer 10.5

realnetworks realplayer 5

realnetworks realplayer 4

Exploits

####################################################################### Luigi Auriemma Application: RealPlayer wwwrealcom Versions: <= 1401633 Platforms: Windows, Macintosh OSX, Linux, Symbian, Palm Bug: heap overflow Exploitation: remote Date: 21 Mar 2011 (found 1 ...