Vulnerability Name: | CVE-2005-0189 (CCN-19193) | ||||||||
Assigned: | 2004-10-06 | ||||||||
Published: | 2004-10-06 | ||||||||
Updated: | 2017-11-16 | ||||||||
Summary: | Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to execute arbitrary code via a long ShowPreferences argument. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Wed Jan 19 2005 - 10:58:57 CST RealPlayer 'ShowPreferences' Buffer Overflow Vulnerability (#NISR19012005e) Source: NTBUGTRAQ Type: Patch, Vendor Advisory 20050119 RealPlayer 'ShowPreferences' Buffer Overflow Vulnerability (#NISR19012005e) Source: MITRE Type: CNA CVE-2005-0189 Source: BUGTRAQ Type: Third Party Advisory 20041006 Patch available for multiple high risk vulnerabilities in RealPlayer Source: BUGTRAQ Type: Third Party Advisory 20050119 RealPlayer 'ShowPreferences' Buffer Overflow Vulnerability (#NISR19012005e) Source: CCN Type: RHSA-2005-299 realplayer security update Source: CCN Type: RealNetworks, Inc. Service and Support Web site RealNetworks, Inc. Releases Update to Address Security Vulnerabilities. Source: MISC Type: Patch, Vendor Advisory http://service.real.com/help/faq/security/040928_player/EN/ Source: CCN Type: US-CERT VU#698390 RealPlayer ActiveX control contains buffer overflow in ShowPreferences Source: CERT-VN Type: Patch, Third Party Advisory, US Government Resource VU#698390 Source: CCN Type: NGSSoftware Insight Security Research Advisory #NISR19012005e RealPlayer 'ShowPreferences' Buffer Overflow Vulnerability Source: BID Type: Patch, Third Party Advisory, VDB Entry, Vendor Advisory 12311 Source: CCN Type: BID-12311 RealNetworks RealOne Player And RealPlayer ShowPreferences Action Buffer Overflow Vulnerability Source: XF Type: UNKNOWN realplayer-showpreference-bo(19193) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |