Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute arbitrary code via a crafted Lyrics3 2.00 tag in an MP3 file, resulting in a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Realone_player | Realnetworks | 1.0 (including) | 1.0 (including) |
Realone_player | Realnetworks | 2.0 (including) | 2.0 (including) |
Realplayer | Realnetworks | 10.0 (including) | 10.0 (including) |
Realplayer | Realnetworks | 10.5-6.0.12.1040 (including) | 10.5-6.0.12.1040 (including) |
Realplayer | Realnetworks | 10.5-6.0.12.1578 (including) | 10.5-6.0.12.1578 (including) |
Realplayer | Realnetworks | 10.5-6.0.12.1698 (including) | 10.5-6.0.12.1698 (including) |
Realplayer | Realnetworks | 10.5-6.0.12.1741 (including) | 10.5-6.0.12.1741 (including) |
Realplayer_enterprise | Realnetworks | * | * |