Heap-based buffer overflow in DUNZIP32.DLL for RealPlayer 8, 10, and 10.5 and RealOne Player 1 and 2 allows remote attackers to execute arbitrary code via a crafted RealPlayer Skin (RJS) file, a different vulnerability than CVE-2004-1094.
Software | From | Fixed in |
---|---|---|
realnetworks / realplayer | - | - |
realnetworks / realplayer | 10.0 | 10.0.x |
realnetworks / realplayer | 10.5 | 10.5.x |
realnetworks / realplayer | 10.5_6.0.12.1040 | 10.5_6.0.12.1040.x |
realnetworks / realplayer | 10.5_6.0.12.1053 | 10.5_6.0.12.1053.x |
realnetworks / realplayer | 10.5_6.0.12.1056 | 10.5_6.0.12.1056.x |
realnetworks / realplayer | 10.5_6.0.12.1059 | 10.5_6.0.12.1059.x |
realnetworks / realplayer | 10.5_6.0.12.1069 | 10.5_6.0.12.1069.x |
realnetworks / realplayer | 10.5_6.0.12.1235 | 10.5_6.0.12.1235.x |
realnetworks / realplayer | 8.0 | 8.0.x |
realnetworks / realone_player | 1.0 | 1.0.x |
realnetworks / realone_player | 2.0 | 2.0.x |