RealNetworks RealPlayer RM file code execution
| realplayer-rm-code-execution (17549) |
Description:
RealNetworks' RealPlayer could allow a remote attacker to execute arbitrary code on the system. By creating a specially-crafted RM file, a remote attacker could execute code on the system, once the victim executes the malicious file from a local drive.
Consequences:
Gain Access
Remedy:
Install the appropriate update for your system, as listed in RealNetworks, Inc. RealNetworks, Inc. Releases Update September 28, 2004. See References.
References:
- BugTraq Mailing List, Fri Oct 01 2004 - 12:37:56 CDT: EEYE: RealPlayer pnen3260.dll Heap Overflow.
- CIAC Information Bulletin 0-223: RealNetworks, Inc. Releases Update to Address Security Vulnerabilities.
- RealNetworks, Inc. Releases Update September 28, 2004: RealNetworks, Inc. Releases Update to Address Security Vulnerabilities..
- BID-11309: RealNetworks RealOne Player And RealPlayer PNen3260.DLL Remote Integer Overflow Vulnerability
- BID-11335: RealOne Player and RealPlayer Multiple Unspecified Remote Vulnerabilities
- CVE-2004-1481: Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.
- SA12672: RealOne Player / RealPlayer / Helix Player Multiple Vulnerabilities
Platforms Affected:
- Real Helix Player 1.0.0
- Real RealONE Player 1
- Real RealONE Player 2
- Real RealONE Player for Mac OS X 9.0.0.288
- Real RealONE Player for Mac OS X 9.0.0.297
- Real RealPlayer 10 jp
- Real RealPlayer 10 de
- Real RealPlayer 10 Beta
- Real RealPlayer 10 en
- Real RealPlayer 10.0
- Real RealPlayer 10.5
- Real RealPlayer 10.5_build_6.0.12.1016 Beta
- Real RealPlayer 10.5_build_6.0.12.1040
- Real RealPlayer 10_build_6.0.12.690
- Real RealPlayer 8.0 Mac OS
- Real RealPlayer 8.0 Win32
- Real RealPlayer 8.0 Unix
- Real RealPlayer Enterprise
- Real RealPlayer for Linux 10
- Real RealPlayer for Mac OS X 10
Reported:
Sep 28, 2004
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
