CVE-2012-2407: Buffer Overflow
Buffer overflow in RealNetworks RealPlayer before 15.0.6.14, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer before 12.0.1.1750 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted AAC file that is not properly handled during stream-data unpacking.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2407?
CVE-2012-2407 is rated as a medium severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2012-2407?
To fix CVE-2012-2407, update RealPlayer to a version that is 15.0.6.14 or higher.
Which versions of RealPlayer are affected by CVE-2012-2407?
CVE-2012-2407 affects RealPlayer versions before 15.0.6.14 and RealPlayer SP versions 1.0 through 1.1.5.
What impact can CVE-2012-2407 have on my system?
CVE-2012-2407 can lead to a denial of service or potentially allow remote attackers to exploit additional unspecified impacts.
Is there a workaround for CVE-2012-2407 until I can update?
Currently, there are no known workarounds to mitigate CVE-2012-2407, so it is recommended to update to a secure version as soon as possible.