Heap-based buffer overflow in DUNZIP32.DLL for RealPlayer 8, 10, and 10.5 and RealOne Player 1 and 2 allows remote attackers to execute arbitrary code via a crafted RealPlayer Skin (RJS) file, a different vulnerability than CVE-2004-1094.
Link | Tags |
---|---|
http://www.eeye.com/html/research/advisories/AD20051110b.html | third party advisory patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23025 | vdb entry |
http://securitytracker.com/id?1015184 | vdb entry |
http://marc.info/?l=bugtraq&m=113166519206033&w=2 | third party advisory |
http://securityreason.com/securityalert/170 | third party advisory |
http://www.securityfocus.com/bid/15382 | vdb entry |
http://secunia.com/advisories/17514/ | third party advisory patch vendor advisory |
http://service.real.com/help/faq/security/051110_player/EN/ | patch |
http://secunia.com/advisories/17860 | third party advisory |
http://www.osvdb.org/18827 | vdb entry |
http://securitytracker.com/id?1015185 | vdb entry |