CVE-2007-4904

Realnetworks Helix Player - Numeric Error

Title source: rule

Description

RealNetworks RealPlayer 10.1.0.3114 and earlier, and Helix Player 1.0.6.778 on Fedora Core 6 (FC6) and possibly other platforms, allow user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.

Exploits (1)

exploitdb WORKING POC
pythondoswindows
https://www.exploit-db.com/exploits/4683

Scores

EPSS 0.0572
EPSS Percentile 90.3%

Classification

CWE
CWE-189
Status draft

Affected Products (5)

realnetworks/helix_player
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer

Timeline

Published Sep 17, 2007
Tracked Since Feb 18, 2026