Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
Link | Tags |
---|---|
http://www.idefense.com/application/poi/display?id=209&type=vulnerabilities | patch vendor advisory third party advisory |
http://service.real.com/help/faq/security/050224_player | patch vendor advisory |
http://www.redhat.com/support/errata/RHSA-2005-271.html | vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10926 | signature vdb entry |
http://www.redhat.com/support/errata/RHSA-2005-265.html | patch vendor advisory |