20070626 RealNetworks RealPlayer/HelixPlayer SMIL wallclock Stack Overflow VulnerabilityThird-party advisory
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547 CVE-2007-3410
RealNetworks RealPlayer/HelixPlayer - SMIL wallclock Stack Overflow (PoC)
Record summary
CVE-2007-3410 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer 10, 10.1, and possibly 10.5, RealOne Player, RealPlayer Enterprise, and Helix Player 10.5-GOLD and 10.0.5 through 10.0.8, allows remote attackers to execute arbitrary code via an SMIL (SMIL2) file with a long wallclock value.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBRealNetworks RealPlayer/HelixPlayer - SMIL wallclock Stack Overflow (PoC)ExploitDB exploitby axisNot analyzed1 file
References
Showing 12 of 2237374vdb entry
http://osvdb.org/37374 38342vdb entry
http://osvdb.org/38342 25819Third-party advisory
http://secunia.com/advisories/25819 25859Third-party advisory
http://secunia.com/advisories/25859 26463Third-party advisory
http://secunia.com/advisories/26463 26828Third-party advisory
http://secunia.com/advisories/26828 27361Third-party advisory
http://secunia.com/advisories/27361 GLSA-200709-05Vendor advisory
http://security.gentoo.org/glsa/glsa-200709-05.xml 1018297vdb entry
http://securitytracker.com/id?1018297 1018299vdb entry
http://securitytracker.com/id?1018299 service.real.comConfirmation
http://service.real.com/realplayer/security/10252007_player/en