Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.62905
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2008:0812
Summary:NOSUMMARY
Description:Description:

The remote host is missing updates announced in
advisory RHSA-2008:0193.

RealPlayer 10.0.9 is vulnerable to a critical security flaw and should no
longer be used. A remote attacker could leverage this flaw to execute
arbitrary code as the user running RealPlayer.

Solution:
This issue is addressed in RealPlayer 11. Red Hat is unable to ship
RealPlayer 11 due to additional proprietary codecs included in that
version.

Download an update directly from www.real.com

http://rhn.redhat.com/errata/RHSA-2008-0812.html

Risk factor : Critical

CVSS Score:
9.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-5400
BugTraq ID: 30370
http://www.securityfocus.com/bid/30370
Bugtraq: 20080725 Secunia Research: RealPlayer SWF Frame Handling Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/494749/100/0/threaded
CERT/CC vulnerability note: VU#298651
http://www.kb.cert.org/vuls/id/298651
http://secunia.com/secunia_research/2007-93/advisory/
http://www.redhat.com/support/errata/RHSA-2008-0812.html
http://www.securitytracker.com/id?1020562
http://secunia.com/advisories/27620
http://secunia.com/advisories/31321
http://secunia.com/advisories/35416
http://securityreason.com/securityalert/4048
SuSE Security Announcement: SUSE-SR:2009:011 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.html
http://www.vupen.com/english/advisories/2008/2194/references
XForce ISS Database: realplayer-swf-frame-bo(43996)
https://exchange.xforce.ibmcloud.com/vulnerabilities/43996
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.