FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

realplayer -- remote heap overflow

Affected packages
linux-realplayer <= 10.0.2

Details

VuXML ID c73305ae-8cd7-11d9-9873-000a95bc6fae
Discovery 2005-03-01
Entry 2005-03-04

Two exploits have been identified in the Linux RealPlayer client. RealNetworks states:

RealNetworks, Inc. has addressed recently discovered security vulnerabilities that offered the potential for an attacker to run arbitrary or malicious code on a customer's machine. RealNetworks has received no reports of machines compromised as a result of the now-remedied vulnerabilities. RealNetworks takes all security vulnerabilities very seriously.

The specific exploits were:

References

CVE Name CVE-2005-0611
Message http://marc.theaimsgroup.com/?l=vulnwatch&m=110977858619314
URL http://service.real.com/help/faq/security/050224_player/EN/