Oval Definition:oval:org.mitre.oval:def:6651
Revision Date:2010-11-01Version:3
Title:Multiple integer overflows in the ParseKnownType function in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4
Description:Multiple integer overflows in the ParseKnownType function in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows allow remote attackers to execute arbitrary code via crafted (1) HX_FLV_META_AMF_TYPE_MIXEDARRAY or (2) HX_FLV_META_AMF_TYPE_ARRAY data in an FLV file.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-3000
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):RealPlayer
RealPlayer SP
Definition Synopsis
  • RealPlayer or RealPlayer SP is installed on the system
  • AND
  • Check if the version of RealPlayer SP is greater than or equal to 1.0
  • AND Check if the version of RealPlayer SP is less than 1.1.5
  • Check if the version of RealPlayer is greater than or equal to 11.0
  • AND Check if the version of RealPlayer is less than or equal to 11.1
  • BACK