Helix Player Encoded URI Processing Buffer Overflow Vulnerability
BID:38161
Info
Helix Player Encoded URI Processing Buffer Overflow Vulnerability
| Bugtraq ID: | 38161 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2010-0416 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 03 2007 12:00AM |
| Updated: | Jul 03 2007 12:00AM |
| Credit: | gwright |
| Vulnerable: |
Redhat Enterprise Linux WS 4 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux Desktop version 4 RealNetworks Helix Player for Linux 11.0.2 RealNetworks Helix Player for Linux 11.0.1 RealNetworks Helix Player for Linux 11.0 RealNetworks Helix Player for Linux 10.0.7 RealNetworks Helix Player for Linux 10.0.6 RealNetworks Helix Player for Linux 10.0.5 RealNetworks Helix Player for Linux 10.0.4 RealNetworks Helix Player for Linux 10.0.3 RealNetworks Helix Player for Linux 10.0.2 RealNetworks Helix Player for Linux 10.0.1 RealNetworks Helix Player for Linux 10.0 |
| Not Vulnerable: | |
Discussion
Helix Player Encoded URI Processing Buffer Overflow Vulnerability
Helix Player is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the application. Failed exploit attempts will cause denial-of-service conditions.
Helix Player is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the application. Failed exploit attempts will cause denial-of-service conditions.
Exploit / POC
Helix Player Encoded URI Processing Buffer Overflow Vulnerability
Attackers can exploit this issue by enticing an unsuspecting user into opening a crafted URI.
The following example URI is available:
http://AAA.BBB.CCC.DDD:EEEE/%.20000000s%
Attackers can exploit this issue by enticing an unsuspecting user into opening a crafted URI.
The following example URI is available:
http://AAA.BBB.CCC.DDD:EEEE/%.20000000s%
Solution / Fix
Helix Player Encoded URI Processing Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Helix Player Encoded URI Processing Buffer Overflow Vulnerability
References:
References:
- [Common-cvs] util hxurl.cpp,1.24.4.1,1.24.4.1.4.1 (gwright)
- Bug 561856 �?? CVE-2010-0416 HelixPlayer / RealPlayer: URL unescape buffer overflo (Tomas Hoger)
- Helix Player Homepage (Real Networks)