CVE-2005-2054: Medium severity realnetworks realplayer vulnerability
Unknown vulnerability in RealPlayer 10 and 10.5 (6.0.12.1040-1069) and RealOne Player v1 and v2 allows remote attackers to overwrite arbitrary files or execute arbitrary ActiveX controls via a crafted MP3 file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2054?
The severity of CVE-2005-2054 is classified as critical due to its potential to allow remote code execution.
How do I fix CVE-2005-2054?
To fix CVE-2005-2054, users should update to the latest version of RealPlayer or RealOne Player that addresses this vulnerability.
What versions of RealPlayer are affected by CVE-2005-2054?
CVE-2005-2054 affects RealPlayer versions 10.0 and 10.5, as well as RealOne Player versions 1.0 and 2.0.
What could an attacker achieve by exploiting CVE-2005-2054?
Exploitation of CVE-2005-2054 could allow attackers to overwrite arbitrary files or execute malicious ActiveX controls.
Is there a known exploit for CVE-2005-2054?
Yes, there are known exploits for CVE-2005-2054 that leverage crafted MP3 files to compromise affected systems.