CVE-2011-2952: Use After Free
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via vectors related to a dialog box.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2952?
CVE-2011-2952 has a high severity rating due to its ability to allow remote code execution.
How do I fix CVE-2011-2952?
To fix CVE-2011-2952, update RealPlayer to the latest version that addresses the vulnerability.
What are the affected versions of RealPlayer in CVE-2011-2952?
CVE-2011-2952 affects RealPlayer versions 11.0-11.1 and 14.0.0-14.0.5, along with RealPlayer SP versions 1.0-1.1.5.
Can CVE-2011-2952 be exploited by local attackers?
No, CVE-2011-2952 is specifically exploited by remote attackers through crafted dialog box interactions.
What types of systems are at risk from CVE-2011-2952?
Systems running vulnerable versions of RealPlayer, including both personal and enterprise editions, are at risk from CVE-2011-2952.