Skip to main content

RealPlayer MP4 File Atom Handling Buffer Overflow Vulnerability

Last Update Date: 4 Jul 2014 14:13 Release Date: 4 Jul 2014 3051 Views

RISK: Medium Risk

TYPE: Clients - Audio & Video

TYPE: Audio & Video

A vulnerability has been identified in RealPlayer, which can be exploited by malicious people to compromise a user's system.

 

The vulnerability is caused due to an error when handling atoms in MP4 files and can be exploited to cause a buffer overflow via an MP4 file containing a specially crafted "stsz" or "elst" atom.

 

Successful exploitation may allow execution of arbitrary code.


Impact

  • Remote Code Execution

System / Technologies affected

  • Versions prior to 17.0.10.8

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 17.0.10.8.

Vulnerability Identifier


Source


Related Link