Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
References
Link | Resource |
---|---|
http://www.idefense.com/application/poi/display?id=209&type=vulnerabilities | Patch Vendor Advisory |
http://service.real.com/help/faq/security/050224_player | Patch Vendor Advisory |
http://www.redhat.com/support/errata/RHSA-2005-265.html | Patch Vendor Advisory |
http://www.redhat.com/support/errata/RHSA-2005-271.html | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10926 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-01 21:00
Updated : 2017-10-10 18:29
NVD link : CVE-2005-0455
Mitre link : CVE-2005-0455
JSON object : View
CWE
Products Affected
realnetworks
- realone_player
- realplayer