CVE-2005-0455

RealNetworks RealPlayer <6.0.12.1056 - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16586
exploitdb WORKING POC VERIFIED
by nolimit · c++localwindows
https://www.exploit-db.com/exploits/863
metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/realplayer_smil.rb

Scores

EPSS 0.7542
EPSS Percentile 98.9%

Details

Status published
Published May 02, 2005
Tracked Since Feb 18, 2026