Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.900015
Kategorie:Buffer overflow
Titel:RealPlayer SWF Frame Handling Buffer Overflow Vulnerability - Windows
Zusammenfassung:RealPlayer is prone to a buffer overflow vulnerability.
Beschreibung:Summary:
RealPlayer is prone to a buffer overflow vulnerability.

Vulnerability Insight:
The flaw exists due to a design error in handling/parsing of frames
in Shockwave Flash (SWF) files.

Vulnerability Impact:
Successful exploitation could allow remote attackers to
execute arbitrary code on a user's system.

Affected Software/OS:
RealPlayer Version 10, 10.5 and 11 on Windows (All).

Solution:
Upgrade to the latest version available.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2007-5400
BugTraq ID: 30370
http://www.securityfocus.com/bid/30370
Bugtraq: 20080725 Secunia Research: RealPlayer SWF Frame Handling Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/494749/100/0/threaded
CERT/CC vulnerability note: VU#298651
http://www.kb.cert.org/vuls/id/298651
http://secunia.com/secunia_research/2007-93/advisory/
http://www.redhat.com/support/errata/RHSA-2008-0812.html
http://www.securitytracker.com/id?1020562
http://secunia.com/advisories/27620
http://secunia.com/advisories/31321
http://secunia.com/advisories/35416
http://securityreason.com/securityalert/4048
SuSE Security Announcement: SUSE-SR:2009:011 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.html
http://www.vupen.com/english/advisories/2008/2194/references
XForce ISS Database: realplayer-swf-frame-bo(43996)
https://exchange.xforce.ibmcloud.com/vulnerabilities/43996
CopyrightCopyright (C) 2008 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.