CVE-2006-0323

Realnetworks Helix Player - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified manipulations.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Federico L. Bossi Bonin · perldosmultiple
https://www.exploit-db.com/exploits/1622
exploitdb WORKING POC VERIFIED
by Federico L. Bossi Bonin · perldosmultiple
https://www.exploit-db.com/exploits/27460

Scores

EPSS 0.6847
EPSS Percentile 98.6%

Details

CWE
CWE-119
Status published
Products (6)
realnetworks/helix_player
realnetworks/realone_player
realnetworks/realplayer 10.0 gold
realnetworks/realplayer 10.0.6
realnetworks/realplayer 10.5
realnetworks/rhapsody 3
Published Mar 23, 2006
Tracked Since Feb 18, 2026