Skip to main content

RealPlayer Multiple Vulnerabilities

Last Update Date: 8 Feb 2012 11:08 Release Date: 8 Feb 2012 4507 Views

RISK: High Risk

TYPE: Clients - Audio & Video

TYPE: Audio & Video

Multiple vulnerabilities have been identified in RealPlayer, which can be exploited by malicious people to compromise a user's system.

  1.  An unspecified error exists in rvrender when processing RMFF flags.
  2.  An unspecified error exists when processing RV20 frame size array.
  3.  An unspecified error exists when processing VIDOBJ_START_CODE segments.
  4. An unspecified error exists when processing RV40 content.
  5. An unspecified error exists when processing height and width values within RV10 encoded content.
  6. An unspecified error exists when processing RealAudio coded_frame_size values.

Successful exploitation of the vulnerabilities may allow execution of arbitrary code.


Impact

  • Remote Code Execution

System / Technologies affected

  • RealPlayer 15.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 15.0.2.71

Vulnerability Identifier


Source


Related Link