Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.58488
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2007:0841
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory RHSA-2007:0841.

RealPlayer is a media player that provides media playback locally and via
streaming.

A buffer overflow flaw was found in the way RealPlayer processed
Synchronized Multimedia Integration Language (SMIL) files. It was possible
for a malformed SMIL file to execute arbitrary code with the permissions of
the user running RealPlayer. (CVE-2007-3410)

All users of RealPlayer are advised to upgrade to this updated package
containing RealPlayer version 10.0.9 which is not vulnerable to this issue.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2007-0841.html
http://www.redhat.com/security/updates/classification/#critical

Risk factor : Critical

CVSS Score:
9.3

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2007-3410
BugTraq ID: 24658
http://www.securityfocus.com/bid/24658
CERT/CC vulnerability note: VU#770904
http://www.kb.cert.org/vuls/id/770904
http://security.gentoo.org/glsa/glsa-200709-05.xml
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547
http://osvdb.org/37374
http://osvdb.org/38342
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10554
http://www.redhat.com/support/errata/RHSA-2007-0605.html
http://www.redhat.com/support/errata/RHSA-2007-0841.html
http://securitytracker.com/id?1018297
http://securitytracker.com/id?1018299
http://secunia.com/advisories/25819
http://secunia.com/advisories/25859
http://secunia.com/advisories/26463
http://secunia.com/advisories/26828
http://secunia.com/advisories/27361
http://www.attrition.org/pipermail/vim/2007-October/001841.html
http://www.vupen.com/english/advisories/2007/2339
http://www.vupen.com/english/advisories/2007/3628
XForce ISS Database: realplayer-smiltime-wallclockvalue-bo(35088)
https://exchange.xforce.ibmcloud.com/vulnerabilities/35088
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.