PT-2006-6673 · Realnetworks · Real Networks Helix Mobile Server+1

Evgeny Legerov

·

Published

2006-11-21

·

Updated

2018-10-17

·

CVE-2006-6026

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Real Networks Helix Server versions prior to 11.1.3 Real Networks Helix Mobile Server versions prior to 11.1.3 Real Networks Helix DNA Server versions 11.0 and 11.1
Description A heap-based buffer overflow issue allows remote attackers to cause a denial of service or execute arbitrary code via a DESCRIBE request that contains an invalid LoadTestPassword field.
Recommendations For Real Networks Helix Server versions prior to 11.1.3, update to version 11.1.3 or later. For Real Networks Helix Mobile Server versions prior to 11.1.3, update to version 11.1.3 or later. For Real Networks Helix DNA Server versions 11.0 and 11.1, update to a version later than 11.1.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-6026

Affected Products

Real Networks Helix Dna Server
Real Networks Helix Mobile Server