A buffer overflow has been discovered in RealOne Player when viewing malicious RealFlash presentations. When a vulnerable player attempts to play the presentation, a buffer will be overrun, resulting in memory corruption. Successful exploitation of this issue may allow an attacker to execute arbitrary code with the privleges of the user running RealOne player. Precise technical details regarding this vulnerability are not yet known. This BID will be updated as further information becomes available. ** Reports indicate that the patch for this issue supplied by Real Networks does not correct the problem.
A buffer overflow has been discovered in RealOne Player when viewing malicious RealFlash presentations. When a vulnerable player attempts to play the presentation, a buffer will be overrun, resulting in memory corruption. Successful exploitation of this issue may allow an attacker to execute arbitrary code with the privleges of the user running RealOne player. Precise technical details regarding this vulnerability are not yet known. This BID will be updated as further information becomes available. ** Reports indicate that the patch for this issue supplied by Real Networks does not correct the problem.