CVE-2002-1321
published 2002-12-11CVE-2002-1321: Multiple buffer overflows in RealOne and RealPlayer allow remote attackers to execute arbitrary code via (1) a Synchronized Multimedia Integration Language…
PriorityP427high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
3.25%
86.8th percentile
Multiple buffer overflows in RealOne and RealPlayer allow remote attackers to execute arbitrary code via (1) a Synchronized Multimedia Integration Language (SMIL) file with a long parameter, (2) a long long filename in a rtsp:// request, e.g. from a .m3u file, or (3) certain "Now Playing" options on a downloaded file with a long filename.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| realnetworks | realone_player | — | — |
| realnetworks | realplayer | — | — |
| realnetworks | realplayer | — | — |
| realnetworks | realplayer | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=103808645120764&w=2http://service.real.com/help/faq/security/bufferoverrun_player.htmlhttp://www.securityfocus.com/bid/6227http://www.securityfocus.com/bid/6229https://exchange.xforce.ibmcloud.com/vulnerabilities/10677http://marc.info/?l=bugtraq&m=103808645120764&w=2http://service.real.com/help/faq/security/bufferoverrun_player.htmlhttp://www.securityfocus.com/bid/6227http://www.securityfocus.com/bid/6229https://exchange.xforce.ibmcloud.com/vulnerabilities/10677
2002-12-11
Published