CVE-2011-2955: Use After Free
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5, when an Embedded RealPlayer is used, allows remote attackers to execute arbitrary code via vectors related to a modal dialog.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2955?
CVE-2011-2955 has a high severity rating due to its potential to allow remote code execution.
How do I fix CVE-2011-2955?
To fix CVE-2011-2955, users should update their RealPlayer to the latest version available from RealNetworks.
Which versions of RealPlayer are affected by CVE-2011-2955?
CVE-2011-2955 affects RealPlayer versions 11.0 to 11.1 and 14.0.0 to 14.0.5, as well as RealPlayer SP 1.0 to 1.1.5.
What type of vulnerability is CVE-2011-2955?
CVE-2011-2955 is identified as a use-after-free vulnerability that can lead to arbitrary code execution.
Who can exploit CVE-2011-2955?
CVE-2011-2955 can be exploited by remote attackers to execute arbitrary code if the affected versions of RealPlayer are in use.