Computer Security
[EN] securityvulns.ru no-pyccku


RealPlayer / HelixPlayer buffer overflow
Published:27.06.2007
Source:
SecurityVulns ID:7856
Type:client
Threat Level:
7/10
Description:Buffer overflow on SMIL2 format time parsing.
Affected:REAL : RealPlayer 10.5
 REAL : HelixPlayer 10.5
CVE:CVE-2007-3410 (Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer and HelixPlayer 10.5-GOLD allows remote attackers to execute arbitrary code via an SMIL (SMIL2) file with a long wallclock value.)
Original documentdocumentIDEFENSE, iDefense Security Advisory 06.26.07: RealNetworks RealPlayer/HelixPlayer SMIL wallclock Stack Overflow Vulnerability (27.06.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod