CVE-2010-3750
19.10.2010, 00:00
rjrmrpln.dll in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly validate file contents that are used during interaction with a heap buffer, which allows remote attackers to execute arbitrary code via crafted Name Value Property (NVP) elements in logical streams in a media file.Enginsight
Vendor | Product | Version |
---|---|---|
realnetworks | realplayer | 11.0 |
realnetworks | realplayer | 11.0.1 |
realnetworks | realplayer | 11.0.2 |
realnetworks | realplayer | 11.0.3 |
realnetworks | realplayer | 11.0.4 |
realnetworks | realplayer | 11.0.5 |
realnetworks | realplayer | 11.1 |
realnetworks | realplayer_sp | 1.0.0 |
realnetworks | realplayer_sp | 1.0.1 |
realnetworks | realplayer_sp | 1.0.2 |
realnetworks | realplayer_sp | 1.0.5 |
realnetworks | realplayer_sp | 1.1 |
realnetworks | realplayer_sp | 1.1.1 |
realnetworks | realplayer_sp | 1.1.2 |
realnetworks | realplayer_sp | 1.1.3 |
realnetworks | realplayer_sp | 1.1.4 |
realnetworks | realplayer | 2.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References