Show filters
77 Total Results
Displaying 51-60 of 77
Sort by:
Attacker Value
Unknown
CVE-2007-2264
Disclosure Date: October 31, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a RAM (.ra or .ram) file with a large size value in the RA header.
0
Attacker Value
Unknown
CVE-2007-2263
Disclosure Date: October 31, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in RealNetworks RealPlayer 10.0, 10.1, and possibly 10.5, RealOne Player, and RealPlayer Enterprise allows remote attackers to execute arbitrary code via an SWF (Flash) file with malformed record headers.
0
Attacker Value
Unknown
CVE-2007-4599
Disclosure Date: October 31, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in RealNetworks RealPlayer 10 and possibly 10.5, and RealOne Player 1 and 2, for Windows allows remote attackers to execute arbitrary code via a crafted playlist (PLS) file.
0
Attacker Value
Unknown
CVE-2007-5601
Disclosure Date: October 20, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and earlier versions including 10, RealOne Player, and RealOne Player 2, allows remote attackers to execute arbitrary code via certain playlist names, as demonstrated via the import method to the IERPCtl ActiveX control in ierpplug.dll.
0
Attacker Value
Unknown
CVE-2007-4904
Disclosure Date: September 17, 2007 (last updated October 04, 2023)
RealNetworks RealPlayer 10.1.0.3114 and earlier, and Helix Player 1.0.6.778 on Fedora Core 6 (FC6) and possibly other platforms, allow user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
0
Attacker Value
Unknown
CVE-2007-3410
Disclosure Date: June 26, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer 10, 10.1, and possibly 10.5, RealOne Player, RealPlayer Enterprise, and Helix Player 10.5-GOLD and 10.0.5 through 10.0.8, allows remote attackers to execute arbitrary code via an SMIL (SMIL2) file with a long wallclock value.
0
Attacker Value
Unknown
CVE-2006-1370
Disclosure Date: March 23, 2006 (last updated February 22, 2025)
Buffer overflow in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, RealPlayer 8, and RealPlayer Enterprise before 20060322 allows remote attackers to have an unknown impact via a malicious Mimio boardCast (mbc) file.
0
Attacker Value
Unknown
CVE-2006-0323
Disclosure Date: March 23, 2006 (last updated February 22, 2025)
Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified manipulations.
0
Attacker Value
Unknown
CVE-2005-2922
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in the embedded player in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, and Helix Player allows remote malicious servers to cause a denial of service (crash) and possibly execute arbitrary code via a chunked Transfer-Encoding HTTP response in which either (1) the chunk header length is specified as -1, (2) the chunk header with a length that is less than the actual amount of sent data, or (3) a missing chunk header.
0
Attacker Value
Unknown
CVE-2005-3677
Disclosure Date: November 18, 2005 (last updated February 22, 2025)
Buffer overflow in RealNetworks RealPlayer 10 and 10.5 allows remote attackers to execute arbitrary code via a crafted image in a RealPlayer Skin (RJS) file. NOTE: due to the lack of details, it is unclear how this is different than CVE-2005-2629 and CVE-2005-2630, but the vendor advisory implies that it is different.
0