Intrusion Prevention

RealNetworks.RealPlayer.mp4.stsd.Atom.Size.Memory.Corruption

Description

This indicates an attack attempt against a Heap Overflow vulnerability in RealNetworks RealPlayer.
The vulnerability is caused by an error when the vulnerable software handles a malformed mp4 file. It allows a remote attacker to execute arbitrary code or crash vulnerable systems via a crafted "mp4" file.

Affected Products

RealPlayer 16.0.0.0 and prior

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://service.real.com/realplayer/security/03152013_player/en/

CVE References

CVE-2013-1750