First published: Tue Dec 14 2010(Updated: )
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code via malformed multi-rate data in an audio stream.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RealPlayer | =11.0 | |
RealPlayer | =11.0.4 | |
RealPlayer | =11.0.2 | |
RealPlayer | =11.0.3 | |
RealPlayer | =11.0.5 | |
RealPlayer | =11.1 | |
RealPlayer | =11.0.1 | |
macOS Yosemite | ||
RealPlayer | =11.0.2.1744 | |
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4375 has a high severity rating due to the potential for remote code execution.
To fix CVE-2010-4375, upgrade RealPlayer to the latest version that addresses this vulnerability.
CVE-2010-4375 affects RealPlayer versions 11.0 through 11.1 and specific builds up to version 11.0.2.1744.
Yes, CVE-2010-4375 may potentially affect HelixPlayer 1.0.6 and other versions.
CVE-2010-4375 can be exploited via malformed multi-rate data in an audio stream, allowing for arbitrary code execution.