First published: Thu Feb 04 2010(Updated: )
An insufficient array boundary checking flaw was fixed in Real Player's / HelixPlayer's RuleBook structures handling code, leading to a heap corruption: <a href="http://lists.helixcommunity.org/pipermail/common-cvs/2008-January/015484.html">http://lists.helixcommunity.org/pipermail/common-cvs/2008-January/015484.html</a> <a href="https://helixcommunity.org/viewcvs/common/util/rlstate.cpp?view=log#rev1.10">https://helixcommunity.org/viewcvs/common/util/rlstate.cpp?view=log#rev1.10</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
RealNetworks Helix Player Linux | =1.0.6 | |
RealPlayer |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0417 is classified as a high severity vulnerability due to its potential for causing heap corruption.
To fix CVE-2010-0417, users should update to the latest version of RealPlayer or Helix Player that addresses this flaw.
CVE-2010-0417 affects RealPlayer and Helix Player, specifically version 1.0.6 of Helix Player.
CVE-2010-0417 is a heap corruption vulnerability caused by insufficient array boundary checking.
CVE-2010-0417 poses a risk only if the affected software versions are still in use without appropriate updates.