CVE-2002-1643

Realnetworks Helix Universal Server - Buffer Overflow

Title source: rule

Description

Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbitrary code via (1) a long Transport field in a SETUP RTSP request, (2) a DESCRIBE RTSP request with a long URL argument, or (3) two simultaneous HTTP GET requests with long arguments.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/16286
exploitdb WORKING POC VERIFIED
by Johnny Cyberpunk · cremotewindows
https://www.exploit-db.com/exploits/23
exploitdb WORKING POC VERIFIED
by H D Moore · rubyremotemultiple
https://www.exploit-db.com/exploits/9937
metasploit WORKING POC GREAT
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/realserver/describe.rb

Scores

EPSS 0.8055
EPSS Percentile 99.1%

Details

Status published
Products (2)
realnetworks/helix_universal_server 9.0
realnetworks/helix_universal_server 9.0.2.768
Published Dec 19, 2002
Tracked Since Feb 18, 2026