CVE-2011-1525

EUVD-2011-1526
Heap-based buffer overflow in rvrender.dll in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.2, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via a crafted frame in an Internet Video Recording (IVR) file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 96%
Affected Products (NVD)
VendorProductVersion
realnetworksrealplayer
𝑥
≤ 14.0.1.633
realnetworksrealplayer
10.0
realnetworksrealplayer
10.5
realnetworksrealplayer
11.0
realnetworksrealplayer
11.0.1
realnetworksrealplayer
11.0.2
realnetworksrealplayer
11.0.2.1744
realnetworksrealplayer
11.0.2.2315
realnetworksrealplayer
11.0.3
realnetworksrealplayer
11.0.4
realnetworksrealplayer
11.0.5
realnetworksrealplayer
11.1
realnetworksrealplayer
11.1.3
realnetworksrealplayer
11_build_6.0.14.748:_build_6.0
realnetworksrealplayer
12.0.0.1444
realnetworksrealplayer
12.0.0.1548
realnetworksrealplayer
14.0.0
realnetworksrealplayer
14.0.1
realnetworksrealplayer
14.0.1.609
𝑥
= Vulnerable software versions