RealNetworks RealPlayer 10.1.0.3114 and earlier, and Helix Player 1.0.6.778 on Fedora Core 6 (FC6) and possibly other platforms, allow user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Helix_player | Realnetworks | 1.0.6 (including) | 1.0.6 (including) |
Realplayer | Realnetworks | 10.0.8 (including) | 10.0.8 (including) |
Realplayer | Realnetworks | 10.0.9 (including) | 10.0.9 (including) |
Realplayer | Realnetworks | 10.1 (including) | 10.1 (including) |
Realplayer | Realnetworks | 10.5-gold (including) | 10.5-gold (including) |
Helix-player | Ubuntu | dapper | * |
Helix-player | Ubuntu | edgy | * |
Helix-player | Ubuntu | feisty | * |
Helix-player | Ubuntu | gutsy | * |
Helix-player | Ubuntu | hardy | * |
Helix-player | Ubuntu | intrepid | * |
Helix-player | Ubuntu | jaunty | * |
Helix-player | Ubuntu | karmic | * |