Vulnerabilities > CVE-2004-1481 - Unspecified vulnerability in Realnetworks Helix Player, Realone Player and Realplayer
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN realnetworks
nessus
Summary
Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.
Vulnerable Configurations
Nessus
NASL family | Windows |
NASL id | REALPLAYER_UNDISCLOSED_VULNS.NASL |
description | According to its build number, the installed version of RealPlayer / RealOne Player for Windows may allow an attacker to execute arbitrary code and delete arbitrary files on the remote host. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 15395 |
published | 2004-10-01 |
reporter | This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/15395 |
title | RealPlayer Multiple Remote Vulnerabilities (2004-09-28) |
code |
|
References
- http://marc.info/?l=ntbugtraq&m=109708374115061&w=2
- http://marc.info/?l=ntbugtraq&m=109708374115061&w=2
- http://secunia.com/advisories/12672
- http://secunia.com/advisories/12672
- http://www.securityfocus.com/bid/11309
- http://www.securityfocus.com/bid/11309
- http://www.service.real.com/help/faq/security/040928_player/EN/
- http://www.service.real.com/help/faq/security/040928_player/EN/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17549
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17549