9.3
CVSSv2

CVE-2012-0928

Published: 08/02/2012 Updated: 09/02/2012
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The ATRAC codec in RealNetworks RealPlayer 11.x and 14.x up to and including 14.0.7, RealPlayer SP 1.0 up to and including 1.1.5, and Mac RealPlayer 12.x prior to 12.0.0.1703 does not properly decode samples, which allows remote malicious users to execute arbitrary code via a crafted ATRAC audio file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

realnetworks realplayer 14.0.0

realnetworks realplayer 14.0.4

realnetworks realplayer 14.0.6

realnetworks realplayer 14.0.1

realnetworks realplayer 14.0.1.633

realnetworks realplayer 14.0.2

realnetworks realplayer 14.0.3

realnetworks realplayer 14.0.1.609

realnetworks realplayer 14.0.5

realnetworks realplayer 14.0.7

realnetworks realplayer 11.0.1

realnetworks realplayer 11.0.2

realnetworks realplayer 11.0.3

realnetworks realplayer 11.0.5

realnetworks realplayer 11.0.2.1744

realnetworks realplayer 11.1.3

realnetworks realplayer 11.0

realnetworks realplayer 11.1

realnetworks realplayer 11.0.4

realnetworks realplayer 11.0.2.2315

realnetworks realplayer 11_build_6.0.14.748

realnetworks realplayer sp 1.1

realnetworks realplayer sp 1.1.1

realnetworks realplayer sp 1.1.2

realnetworks realplayer sp 1.1.3

realnetworks realplayer sp 1.0.1

realnetworks realplayer sp 1.0.5

realnetworks realplayer sp 1.1.4

realnetworks realplayer sp 1.0.0

realnetworks realplayer sp 1.0.2

realnetworks realplayer sp 1.1.5

realnetworks realplayer 12.0.0.1701

realnetworks realplayer 12.0.0.1569