Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.62905
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2008:0812
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory RHSA-2008:0193.

RealPlayer 10.0.9 is vulnerable to a critical security flaw and should no
longer be used. A remote attacker could leverage this flaw to execute
arbitrary code as the user running RealPlayer.

Solution:
This issue is addressed in RealPlayer 11. Red Hat is unable to ship
RealPlayer 11 due to additional proprietary codecs included in that
version.

Download an update directly from www.real.com

http://rhn.redhat.com/errata/RHSA-2008-0812.html

Risk factor : Critical

CVSS Score:
9.3

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2007-5400
BugTraq ID: 30370
http://www.securityfocus.com/bid/30370
Bugtraq: 20080725 Secunia Research: RealPlayer SWF Frame Handling Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/494749/100/0/threaded
CERT/CC vulnerability note: VU#298651
http://www.kb.cert.org/vuls/id/298651
http://secunia.com/secunia_research/2007-93/advisory/
http://www.redhat.com/support/errata/RHSA-2008-0812.html
http://www.securitytracker.com/id?1020562
http://secunia.com/advisories/27620
http://secunia.com/advisories/31321
http://secunia.com/advisories/35416
http://securityreason.com/securityalert/4048
SuSE Security Announcement: SUSE-SR:2009:011 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.html
http://www.vupen.com/english/advisories/2008/2194/references
XForce ISS Database: realplayer-swf-frame-bo(43996)
https://exchange.xforce.ibmcloud.com/vulnerabilities/43996
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.