Subscribe to Windows IT Pro
October 05, 2004 12:00 AM

Arbitrary Code Execution Vulnerability in RealPlayer

Windows IT Pro
InstantDoc ID #44143
Rating: (0)

Reported October 01, 2004, by eEye Digital Security

VERSIONS AFFECTED

  • RealPlayer 10.5 (6.0.12.1040 and earlier)
  • RealPlayer 10
  • RealPlayer 8 (Local Playback)
  • RealOne Player V2, V1

 

DESCRIPTION
A vulnerability in RealPlayer could let a remote attacker reliably overwrite heap memory with arbitrary data and execute arbitrary code within the user security context. This specific flaw exists within the pnen3260.dll file that RealPlayer uses. By specially crafting a malformed .rm movie file along with a Synchronized Multimedia Integration Language (SMIL) file, a direct heap overwrite is triggered and reliable code execution is then possible.

VENDOR RESPONSE
RealNetworks has released has released a patch for this vulnerability, which is also available via the Updates section of the affected application.

CREDIT
Discovered by eEye Digital Security.

Related Content:

ARTICLE TOOLS

Comments
    There are no comments to display. Be the first one!
You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.