First published: Wed Oct 31 2007(Updated: )
Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a crafted RM file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RealNetworks RealPlayer | ||
RealNetworks RealPlayer | =1.0 | |
RealNetworks RealPlayer | =2.0 | |
RealPlayer | =8.0 | |
RealPlayer | =10.0 | |
RealPlayer | =10.0-10.0.0.305 | |
RealPlayer | =10.0-10.0.0.331 | |
RealPlayer | =10.0-10.0.0.352 | |
RealPlayer | =10.0-10.0.5 | |
RealPlayer | =10.0-10.0.6 | |
RealPlayer | =10.0-10.0.7 | |
RealPlayer | =10.0-10.0.8 | |
RealPlayer | =10.0-10.0.9 | |
RealPlayer | =10.1-10.0.0.396 | |
RealPlayer | =10.1-10.0.0.412 | |
RealPlayer | =10.5-6.0.12.1040 | |
RealPlayer | =10.5-6.0.12.1578 | |
RealPlayer | =10.5-6.0.12.1698 | |
RealPlayer | =10.5-6.0.12.1741 | |
RealPlayer |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5081 is classified as a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2007-5081, users should update to the latest version of RealPlayer or RealOne Player that addresses this vulnerability.
CVE-2007-5081 affects RealPlayer versions 8, 10, 10.1, and possibly 10.5, as well as RealOne Player versions 1 and 2.
CVE-2007-5081 enables remote attackers to execute arbitrary code through crafted RM files.
Yes, CVE-2007-5081 affects multiple operating systems including Windows, Mac, and Linux versions of RealPlayer and RealOne Player.