Описание
Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to execute arbitrary code via a long ShowPreferences argument.
Ссылки
- PatchVendor Advisory
- Third Party Advisory
- Third Party Advisory
- PatchVendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- PatchThird Party AdvisoryVDB EntryVendor Advisory
- PatchVendor Advisory
- Third Party Advisory
- Third Party Advisory
- PatchVendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- PatchThird Party AdvisoryVDB EntryVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:realnetworks:realone_player:1.0:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realone_player:2.0:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0:*:*:en:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0:*:*:ja:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0:*:de:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0_6.0.12.690:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.0_beta:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1016_beta:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1040:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.22233
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
redhat
почти 21 год назад
Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to execute arbitrary code via a long ShowPreferences argument.
github
больше 3 лет назад
Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to execute arbitrary code via a long ShowPreferences argument.
EPSS
Процентиль: 96%
0.22233
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other