CVE-2006-1370
Summary
| CVE | CVE-2006-1370 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-03-23 23:06:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Buffer overflow in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, RealPlayer 8, and RealPlayer Enterprise before 20060322 allows remote attackers to have an unknown impact via a malicious Mimio boardCast (mbc) file. |
Risk And Classification
Primary CVSS: v2.0 9.3 from [email protected]
AV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS: 0.046100000 probability, percentile 0.892700000 (date 2026-04-18)
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:M/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Realnetworks | Realone Player | 1.0 | All | All | All |
| Application | Realnetworks | Realone Player | 2.0 | All | All | All |
| Application | Realnetworks | Realplayer | All | All | enterprise | All |
| Application | Realnetworks | Realplayer | 10.0 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1040 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1053 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1056 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1059 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1069 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1235 | All | All | All |
| Application | Realnetworks | Realplayer | 10.5_6.0.12.1348 | All | All | All |
| Application | Realnetworks | Realplayer | 8.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| About Secunia Research | Flexera | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| RealPlayer Buffer Overflow in Processing Mimio Broadcast Files May Let Remote Users Execute Arbitrary Code - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| RealNetworks Multiple Products Multiple Buffer Overflow Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| 404 Not Found | af854a3a-2127-422b-91ae-364da2661108 | www.service.real.com | Patch |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| US-CERT Vulnerability Note VU#451556 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.