Heap-based buffer overflow in DUNZIP32.DLL for RealPlayer 8, 10, and 10.5 and RealOne Player 1 and 2 allows remote attackers to execute arbitrary code via a crafted RealPlayer Skin (RJS) file, a different vulnerability than CVE-2004-1094.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Realone_player | Realnetworks | 1.0 (including) | 1.0 (including) |
Realone_player | Realnetworks | 2.0 (including) | 2.0 (including) |
Realplayer | Realnetworks | * | * |
Realplayer | Realnetworks | 8.0 (including) | 8.0 (including) |
Realplayer | Realnetworks | 10.0 (including) | 10.0 (including) |
Realplayer | Realnetworks | 10.5 (including) | 10.5 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1040 (including) | 10.5_6.0.12.1040 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1053 (including) | 10.5_6.0.12.1053 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1056 (including) | 10.5_6.0.12.1056 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1059 (including) | 10.5_6.0.12.1059 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1069 (including) | 10.5_6.0.12.1069 (including) |
Realplayer | Realnetworks | 10.5_6.0.12.1235 (including) | 10.5_6.0.12.1235 (including) |