CVE-2005-2710: Medium severity realnetworks realplayer vulnerability
Published Sep 27, 2005
·Updated
Format string vulnerability in Real HelixPlayer and RealPlayer 10 allows remote attackers to execute arbitrary code via the (1) image handle or (2) timeformat attribute in a RealPix (.rp) or RealText (.rt) file.
Affected Software
2 affected components
RealNetworks Helix Player
RealNetworks RealPlayer=10.0
Event History
Sep 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2710?
CVE-2005-2710 has a high severity level due to its potential for remote code execution.
2
How do I fix CVE-2005-2710?
To fix CVE-2005-2710, update to the latest versions of Real HelixPlayer or RealPlayer that patch this vulnerability.
3
What products are affected by CVE-2005-2710?
CVE-2005-2710 affects Real HelixPlayer and RealPlayer version 10.0.
4
What type of vulnerability is CVE-2005-2710?
CVE-2005-2710 is identified as a format string vulnerability.
5
Can CVE-2005-2710 be exploited remotely?
Yes, CVE-2005-2710 can be exploited remotely through specially crafted RealPix or RealText files.