RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
BID:12697
Info
RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
| Bugtraq ID: | 12697 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2005-0611 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 01 2005 12:00AM |
| Updated: | Jul 12 2009 10:56AM |
| Credit: | Discovery of this vulnerability is credited to Mark Litchfield of NGSSoftware. |
| Vulnerable: |
Redhat Enterprise Linux WS 3 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux AS 3 Redhat Desktop 3.0 RealNetworks RealPlayer For Unix 10.0.3 RealNetworks RealPlayer Enterprise 1.6 RealNetworks RealPlayer Enterprise 1.5 RealNetworks RealPlayer Enterprise 1.2 RealNetworks RealPlayer Enterprise 1.1 RealNetworks RealPlayer Enterprise RealNetworks RealPlayer 10 for Mac OS 10.0.0.325 RealNetworks RealPlayer 10 for Mac OS 10.0.0.305 RealNetworks RealPlayer 10 for Mac OS RealNetworks RealPlayer 10 for Linux RealNetworks RealPlayer 10.5 v6.0.12.1056 RealNetworks RealPlayer 10.5 v6.0.12.1053 RealNetworks RealPlayer 10.5 v6.0.12.1040 RealNetworks RealPlayer 10.0 RealNetworks RealPlayer 8.0 Win32 RealNetworks RealPlayer 8.0 Unix RealNetworks RealPlayer 8.0 Mac RealNetworks RealOne Player for OSX 9.0 .297 RealNetworks RealOne Player for OSX 9.0 .288 RealNetworks RealOne Player 6.0.11 .872 RealNetworks RealOne Player 6.0.11 .868 RealNetworks RealOne Player 6.0.11 .853 RealNetworks RealOne Player 6.0.11 .841 RealNetworks RealOne Player 6.0.11 .840 RealNetworks RealOne Player 6.0.11 .830 RealNetworks RealOne Player 6.0.11 .818 RealNetworks RealOne Player 1.0 RealNetworks Helix Player for Linux 1.0 |
| Not Vulnerable: |
RealNetworks RealPlayer 10 for Mac OS 10.0 .0.331 RealNetworks RealPlayer 10.5 v6.0.12.1059 |
Discussion
RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
RealNetworks RealPlayer and RealOne Player are reported prone to an unspecified buffer overflow vulnerability. It is reported that the issue manifests when a malicious WAV file is processed. The vulnerability affects heap-based memory.
A remote attacker may exploit this vulnerability to execute arbitrary code in the context of a user that uses a vulnerable version of the media player to play a malicious WAV file.
RealNetworks RealPlayer and RealOne Player are reported prone to an unspecified buffer overflow vulnerability. It is reported that the issue manifests when a malicious WAV file is processed. The vulnerability affects heap-based memory.
A remote attacker may exploit this vulnerability to execute arbitrary code in the context of a user that uses a vulnerable version of the media player to play a malicious WAV file.
Exploit / POC
RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
Solution:
SuSE has released advisory SUSE-SA:2005:014 to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
The vendor has released updates dealing with this issue. Please see the referenced advisory for more information on obtaining the updated packages.
Updates may be applied from within the software by selecting the Check For Update option from the Tools menu.
Red Hat has released advisory RHSA-2005:299-06 containing RealPlayer 10 packages for Red Hat Enterprise Linux 3. Please see the advisory in Web references for more information.
RealNetworks RealPlayer For Unix 10.0.3
Solution:
SuSE has released advisory SUSE-SA:2005:014 to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
The vendor has released updates dealing with this issue. Please see the referenced advisory for more information on obtaining the updated packages.
Updates may be applied from within the software by selecting the Check For Update option from the Tools menu.
Red Hat has released advisory RHSA-2005:299-06 containing RealPlayer 10 packages for Red Hat Enterprise Linux 3. Please see the advisory in Web references for more information.
RealNetworks RealPlayer For Unix 10.0.3
-
SuSE RealPlayer-10.0.3-0.1.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/RealPlayer-10.0.3 -0.1.i586.rpm
References
RealNetworks RealOne Player/RealPlayer Unspecified WAV File Processing Buffer Overflow Vulnerability
References:
References:
- Home Page (Real Networks)
- RealNetworks Releases Security Update to Address RealOne Player Security (Real Networks)
- RealNetworks, Inc. Releases Update to Address Security Vulnerabilities. (Real Networks)
- RHSA-2005:299-06 - realplayer security update (RedHat)
- RealOne Player / Real .WAV Heap Overflow File Format Vulnerability ("Mark Litchfield" )