CVE-2005-0455: Buffer Overflow
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0455?
CVE-2005-0455 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2005-0455?
To fix CVE-2005-0455, users should update to a patched version of RealPlayer or apply any available security updates from RealNetworks.
Which versions of RealPlayer are affected by CVE-2005-0455?
CVE-2005-0455 affects RealPlayer 10.5, 10.0, 8.0, and RealOne Player versions V1 and V2.
What type of attack can exploit CVE-2005-0455?
CVE-2005-0455 can be exploited through specially crafted .SMIL files that include a large system-screen-size value.
Is CVE-2005-0455 a stack-based or heap-based buffer overflow?
CVE-2005-0455 is a stack-based buffer overflow vulnerability.