CVE-2010-2579
Summary
| CVE | CVE-2010-2579 |
|---|---|
| State | PUBLISHED |
| Assigner | flexera |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-12-14 16:00:02 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 11.1, and Linux RealPlayer 11.0.2.1744 does not properly initialize the number of channels, which allows attackers to obtain unspecified "memory access" via unknown vectors. |
Risk And Classification
Primary CVSS: v2.0 5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:N/A:N
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:N/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Realnetworks | Realplayer | 11.0 | All | All | All |
| Application | Realnetworks | Realplayer | 11.0.1 | All | All | All |
| Application | Realnetworks | Realplayer | 11.0.2 | All | All | All |
| Application | Realnetworks | Realplayer | 11.0.3 | All | All | All |
| Application | Realnetworks | Realplayer | 11.0.4 | All | All | All |
| Application | Realnetworks | Realplayer | 11.0.5 | All | All | All |
| Application | Realnetworks | Realplayer | 11.1 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.0.0 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.0.1 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.0.2 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.0.5 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.1 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.1.1 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.1.2 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.1.3 | All | All | All |
| Application | Realnetworks | Realplayer Sp | 1.1.4 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| RealPlayer and StarSearch by Real Official Homepage — Real.com | af854a3a-2127-422b-91ae-364da2661108 | service.real.com | Vendor Advisory |
| SecurityTracker.com Archives - RealPlayer Buffer Overflows and Memory Corruption Errors Let Remote Users Execute Arbitrary Code | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.