First published: Thu Mar 18 2004(Updated: )
Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM or (5) .SMIL files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RealNetworks RealOne Desktop Manager | ||
RealNetworks RealOne Enterprise Desktop | =6.0.11.774 | |
RealNetworks RealPlayer | =1.0 | |
RealNetworks RealPlayer | =2.0 | |
RealNetworks RealPlayer | =2.0 | |
RealNetworks RealPlayer | =6.0.11.818 | |
RealNetworks RealPlayer | =6.0.11.830 | |
RealNetworks RealPlayer | =6.0.11.841 | |
RealNetworks RealPlayer | =6.0.11.853 | |
RealNetworks RealPlayer | =6.0.11.868 | |
RealPlayer | =8.0 | |
RealPlayer | =8.0 | |
RealPlayer | =8.0 | |
RealPlayer | =10.0_beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0258 has a high severity level due to the potential for remote code execution.
To fix CVE-2004-0258, update RealOne Player, RealOne Enterprise Desktop, and RealPlayer to the latest versions.
CVE-2004-0258 affects RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and various versions of RealPlayer.
CVE-2004-0258 can be exploited through malformed .RP, .RT, .RAM, .RPM, or .SMIL files.
A potential workaround for CVE-2004-0258 is to refrain from opening untrusted media files received from unknown sources.