GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
BID:62250
Info
GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
| Bugtraq ID: | 62250 |
| Class: | Unknown |
| CVE: |
CVE-2013-2603 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 05 2013 12:00AM |
| Updated: | Sep 05 2013 12:00AM |
| Credit: | Carsten Eiram of Risk Based Security |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
GameHouse RealArcade Installer is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected application.
Versions prior to GameHouse RealArcade Installer 3.0.7 are vulnerable.
GameHouse RealArcade Installer is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected application.
Versions prior to GameHouse RealArcade Installer 3.0.7 are vulnerable.
Exploit / POC
GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
Solution / Fix
GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
GameHouse RealArcade Installer CVE-2013-2603 Use After Free Remote Code Execution Vulnerability
References:
References:
- GameHouse Homepage (RealNetworks)