CVE Vulnerabilities

CVE-2011-2954

Published: Aug 18, 2011 | Modified: Oct 06, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Use-after-free vulnerability in the AutoUpdate feature in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5 and RealPlayer SP 1.0 through 1.1.5, when an Embedded RealPlayer is used, allows remote attackers to execute arbitrary code via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Realplayer Realnetworks 11.0 (including) 11.0 (including)
Realplayer Realnetworks 11.1 (including) 11.1 (including)

References