Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-39wh-fw9m-cf9w

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The ATRAC codec in RealNetworks RealPlayer 11.x and 14.x through 14.0.7, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer 12.x before 12.0.0.1703 does not properly decode samples, which allows remote attackers to execute arbitrary code via a crafted ATRAC audio file.

The ATRAC codec in RealNetworks RealPlayer 11.x and 14.x through 14.0.7, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer 12.x before 12.0.0.1703 does not properly decode samples, which allows remote attackers to execute arbitrary code via a crafted ATRAC audio file.

EPSS

Процентиль: 86%
0.02764
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
почти 14 лет назад

The ATRAC codec in RealNetworks RealPlayer 11.x and 14.x through 14.0.7, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer 12.x before 12.0.0.1703 does not properly decode samples, which allows remote attackers to execute arbitrary code via a crafted ATRAC audio file.

EPSS

Процентиль: 86%
0.02764
Низкий

Дефекты

CWE-94