cbcvebase.
CVE-2010-4390
published 2010-12-14

CVE-2010-4390: Multiple heap-based buffer overflows in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, and Linux RealPlayer 11.0.2.1744 allow…

PriorityP343critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
3.09%
86.1th percentile
Multiple heap-based buffer overflows in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, and Linux RealPlayer 11.0.2.1744 allow remote attackers to have an unspecified impact via a crafted header in an IVR file.

Affected

18 ranges
VendorProductVersion rangeFixed in
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
realnetworksrealplayer_sp
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.