CVE-2007-3410: Buffer Overflow
Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer 10, 10.1, and possibly 10.5, RealOne Player, RealPlayer Enterprise, and Helix Player 10.5-GOLD and 10.0.5 through 10.0.8, allows remote attackers to execute arbitrary code via an SMIL (SMIL2) file with a long wallclock value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3410?
CVE-2007-3410 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2007-3410?
To fix CVE-2007-3410, update to a patched version of RealPlayer or Helix Player as specified by RealNetworks.
Which software is affected by CVE-2007-3410?
CVE-2007-3410 affects RealPlayer versions 10, 10.1, 10.5, RealOne Player, and Helix Player versions 10.0.5 to 10.5-GOLD.
What type of vulnerability is CVE-2007-3410?
CVE-2007-3410 is classified as a stack-based buffer overflow vulnerability.
Can CVE-2007-3410 be exploited remotely?
Yes, CVE-2007-3410 can be exploited remotely, allowing attackers to execute arbitrary code.