CVE-2005-2629: Buffer Overflow
Integer overflow in RealNetworks RealPlayer 8, 10, and 10.5, RealOne Player 1 and 2, and Helix Player 10.0.0 allows remote attackers to execute arbitrary code via an .rm movie file with a large value in the length field of the first data packet, which leads to a stack-based buffer overflow, a different vulnerability than CVE-2004-1481.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2629?
CVE-2005-2629 has been assigned a high severity rating due to the potential for remote attackers to execute arbitrary code.
How do I fix CVE-2005-2629?
To fix CVE-2005-2629, users should update their RealNetworks software to a patched version provided by the vendor.
Which software is affected by CVE-2005-2629?
CVE-2005-2629 affects RealPlayer 8, 10, 10.5, RealOne Player 1 and 2, and Helix Player versions 1.0 to 10.0.
What type of vulnerability is CVE-2005-2629?
CVE-2005-2629 is an integer overflow vulnerability that leads to a stack-based buffer overflow.
Can CVE-2005-2629 be exploited remotely?
Yes, CVE-2005-2629 can be exploited remotely through specially crafted .rm movie files.