CVE-2010-0125

RealPlayer 11.0-11.1 and SP 1.0-1.1.4 - Unspecified Impact via AAC Spectral Data Parsing

Title source: llm
STIX 2.1

Description

RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, and Mac RealPlayer 11.0 through 12.0.0.1444 do not properly parse spectral data in AAC files, which has unspecified impact and remote attack vectors.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1024861

Scores

EPSS 0.0040
EPSS Percentile 61.1%

Details

CWE
CWE-264
Status published
Products (18)
realnetworks/realplayer 11.0
realnetworks/realplayer 11.0.1
realnetworks/realplayer 11.0.2
realnetworks/realplayer 11.0.3
realnetworks/realplayer 11.0.4
realnetworks/realplayer 11.0.5
realnetworks/realplayer 11.1
realnetworks/realplayer 12.0.0.1444
realnetworks/realplayer 2.1.2
realnetworks/realplayer_sp 1.0.0
... and 8 more
Published Dec 14, 2010
Tracked Since Feb 18, 2026