CVE-2011-2949
18.08.2011, 23:55
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via crafted ID3v2 tags in an MP3 file.Enginsight
Vendor | Product | Version |
---|---|---|
realnetworks | realplayer | 11.0 |
realnetworks | realplayer | 11.1 |
realnetworks | realplayer | 14.0.0 |
realnetworks | realplayer | 14.0.1 |
realnetworks | realplayer | 14.0.2 |
realnetworks | realplayer | 14.0.3 |
realnetworks | realplayer | 14.0.4 |
realnetworks | realplayer | 14.0.5 |
realnetworks | realplayer_sp | 1.0.0 |
realnetworks | realplayer_sp | 1.0.1 |
realnetworks | realplayer_sp | 1.0.2 |
realnetworks | realplayer_sp | 1.0.5 |
realnetworks | realplayer_sp | 1.1 |
realnetworks | realplayer_sp | 1.1.1 |
realnetworks | realplayer_sp | 1.1.2 |
realnetworks | realplayer_sp | 1.1.3 |
realnetworks | realplayer_sp | 1.1.4 |
realnetworks | realplayer_sp | 1.1.5 |
realnetworks | realplayer | 2.0 |
realnetworks | realplayer | 2.1.2 |
realnetworks | realplayer | 2.1.3 |
realnetworks | realplayer | 2.1.4 |
realnetworks | realplayer | 2.1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References