Buffer overflow in RealNetworks RealPlayer 10 and 10.5 allows remote attackers to execute arbitrary code via a crafted image in a RealPlayer Skin (RJS) file. NOTE: due to the lack of details, it is unclear how this is different than CVE-2005-2629 and CVE-2005-2630, but the vendor advisory implies that it is different.
Software | From | Fixed in |
---|---|---|
realnetworks / realplayer | 10.0 | 10.0.x |
realnetworks / realplayer | 10.5_6.0.12.1040 | 10.5_6.0.12.1040.x |
realnetworks / realplayer | 10.5_6.0.12.1053 | 10.5_6.0.12.1053.x |
realnetworks / realplayer | 10.5_6.0.12.1056 | 10.5_6.0.12.1056.x |
realnetworks / realplayer | 10.5_6.0.12.1059 | 10.5_6.0.12.1059.x |
realnetworks / realplayer | 10.5_6.0.12.1069 | 10.5_6.0.12.1069.x |
realnetworks / realplayer | 10.5_6.0.12.1235 | 10.5_6.0.12.1235.x |