9.3
CVSSv2

CVE-2012-2406

Published: 18/05/2012 Updated: 29/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

RealNetworks RealPlayer prior to 15.0.4.53, and RealPlayer SP 1.0 up to and including 1.1.5, does not properly parse ASMRuleBook data in RealMedia files, which allows remote malicious users to execute arbitrary code via a crafted file.

Vulnerable Product Search on Vulmon Subscribe to Product

realnetworks realplayer

realnetworks realplayer 14.0.5

realnetworks realplayer 14.0.2

realnetworks realplayer 11.0.1

realnetworks realplayer 11.1.3

realnetworks realplayer 10.5

realnetworks realplayer 10.0

realnetworks realplayer sp 1.0.0

realnetworks realplayer sp 1.0.1

realnetworks realplayer sp 1.1.3

realnetworks realplayer 15.02.71

realnetworks realplayer 14.0.1.609

realnetworks realplayer 12.0.0.1444

realnetworks realplayer 11.0.2.2315

realnetworks realplayer 11.0.3

realnetworks realplayer 11.0

realnetworks realplayer 6

realnetworks realplayer 5

realnetworks realplayer sp 1.0.5

realnetworks realplayer 15.0.1.13

realnetworks realplayer 15.0.0

realnetworks realplayer 14.0.0

realnetworks realplayer 14.0.1

realnetworks realplayer 12.0.0.1548

realnetworks realplayer 11.1

realnetworks realplayer 11.0.2

realnetworks realplayer 8

realnetworks realplayer 7

realnetworks realplayer sp 1.1.2

realnetworks realplayer sp 1.1.1

realnetworks realplayer sp 1.0.2

realnetworks realplayer 14.0.4

realnetworks realplayer 14.0.3

realnetworks realplayer 11.0.2.1744

realnetworks realplayer 11_build_6.0.14.748

realnetworks realplayer 11.0.4

realnetworks realplayer 11.0.5

realnetworks realplayer 4

realnetworks realplayer sp 1.1.5

realnetworks realplayer sp 1.1.4

realnetworks realplayer sp 1.1