RealNetworks.RealPlayer.URL.Parsing.Stack.Buffer.Overflow

description-logoDescription

This indicates an attack attempt to exploit a Buffer Overflow vulnerability in RealNewtorks RealPlayer.
The vulnerability is due to an error when the vulnerable software handles a maliciously crafted Microsoft .url file with extension associated with RealPlayer. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application, via a crafted Microsoft .url file.

affected-products-logoAffected Products

RealNetworks RealPlayer 15.0.6.14 and prior

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch or updates available for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-11-09 16.958 Modified
2020-10-28 16.951 Sig Added