PT-2005-1515 · Realnetworks+1 · Realone Player+2

Published

2005-03-02

·

Updated

2017-10-11

·

CVE-2005-0455

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions RealPlayer versions 6.0.12.1056 and earlier RealPlayer version 10 RealPlayer version 8 RealOne Player version V2 RealOne Player version V1
Description The issue is a stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function, located in the smlparse.cpp file. This allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
Recommendations For RealPlayer versions 6.0.12.1056 and earlier, update to a version later than 6.0.12.1056. For RealPlayer version 10, consider disabling the CSmil1Parser::testAttributeFailed function until a patch is available. For RealPlayer version 8, restrict access to .SMIL files to minimize the risk of exploitation. For RealOne Player version V2 and V1, avoid using the vulnerable function until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0455
RHSA-2005:271
RHSA-2005_271

Affected Products

Realone Player
Realplayer
Red Hat