Vulnerabilities > Realnetworks > Realplayer > 8.0

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0455 Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
network
high complexity
realnetworks
5.1
2005-04-19 CVE-2005-0755 Unspecified vulnerability in Realnetworks Helix Player, Realone Player and Realplayer
Heap-based buffer overflow in RealPlayer 10 and earlier, Helix Player before 10.0.4, and RealOne Player v1 and v2 allows remote attackers to execute arbitrary code via a long hostname in a RAM file.
network
high complexity
realnetworks
5.1
2004-12-31 CVE-2004-1798 Unspecified vulnerability in Realnetworks products
RealOne player 6.0.11.868 allows remote attackers to execute arbitrary script in the "My Computer" zone via a Synchronized Multimedia Integration Language (SMIL) presentation with a "file:javascript:" URL, which is executed in the security context of the previously loaded URL, a different vulnerability than CVE-2003-0726.
network
high complexity
realnetworks
5.1
2004-12-31 CVE-2004-1481 Unspecified vulnerability in Realnetworks Helix Player, Realone Player and Realplayer
Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.
network
high complexity
realnetworks
5.1
2004-11-23 CVE-2004-0258 Buffer Overrun vulnerability in Multiple RealPlayer/RealOne Player Supported File Type
Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM or (5) .SMIL files.
network
high complexity
realnetworks
7.6
2004-06-01 CVE-2004-0387 Remote R3T File Stack Buffer Overflow vulnerability in RealNetworks RealOne Player/RealPlayer
Stack-based buffer overflow in the RT3 plugin, as used in RealPlayer 8, RealOne Player, RealOne Player 10 beta, and RealOne Player Enterprise, allows remote attackers to execute arbitrary code via a malformed .R3T file.
network
high complexity
realnetworks
5.1
2003-04-02 CVE-2003-0141 Unspecified vulnerability in Realnetworks products
The PNG deflate algorithm in RealOne Player 6.0.11.x and earlier, RealPlayer 8/RealPlayer Plus 8 6.0.9.584, and other versions allows remote attackers to corrupt the heap and overwrite arbitrary memory via a PNG graphic file format containing compressed data using fixed trees that contain the length values 286-287, which are treated as a very large length.
network
high complexity
realnetworks
5.1
2002-12-11 CVE-2002-1321 Unspecified vulnerability in Realnetworks Realone Player and Realplayer
Multiple buffer overflows in RealOne and RealPlayer allow remote attackers to execute arbitrary code via (1) a Synchronized Multimedia Integration Language (SMIL) file with a long parameter, (2) a long long filename in a rtsp:// request, e.g.
network
low complexity
realnetworks
7.5
2002-06-25 CVE-2002-0337 Denial of Service vulnerability in Realnetworks Realplayer 8.0
RealPlayer 8 allows remote attackers to cause a denial of service (CPU utilization) via malformed .mp3 files.
network
high complexity
realnetworks
5.4