CVE-2002-1014: Buffer Overflow
Buffer overflow in RealJukebox 2 1.0.2.340 and 1.0.2.379, and RealOne Player Gold 6.0.10.505, allows remote attackers to execute arbitrary code via an RFS skin file whose skin.ini contains a long value in a CONTROLnImage argument, such as CONTROL1Image.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1014?
CVE-2002-1014 is classified as a critical vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2002-1014?
To fix CVE-2002-1014, users should update RealJukebox or RealOne Player to the latest version that addresses this vulnerability.
What software is affected by CVE-2002-1014?
CVE-2002-1014 affects RealJukebox versions 1.0.2.340 and 1.0.2.379, as well as RealOne Player Gold version 6.0.10.505.
What type of attack does CVE-2002-1014 facilitate?
CVE-2002-1014 facilitates remote code execution attacks via a buffer overflow when processing malicious RFS skin files.
Can CVE-2002-1014 affect my system if I don't use the affected software?
If you do not use the affected versions of RealJukebox or RealOne Player, your system is not directly impacted by CVE-2002-1014.