CVE-2011-4259

RealNetworks RealPlayer <15.0.0 - RCE

Title source: llm
STIX 2.1

Description

Integer underflow in RealNetworks RealPlayer before 15.0.0 allows remote attackers to execute arbitrary code via a crafted width value in an MPG file.

References (1)

Core 1
Core References

Scores

EPSS 0.0173
EPSS Percentile 82.7%

Details

CWE
CWE-189
Status published
Products (30)
realnetworks/realplayer 4
realnetworks/realplayer 5
realnetworks/realplayer 6
realnetworks/realplayer 7
realnetworks/realplayer 8
realnetworks/realplayer 10.0
realnetworks/realplayer 10.5
realnetworks/realplayer 11.0
realnetworks/realplayer 11.0.1
realnetworks/realplayer 11.0.2
... and 20 more
Published Nov 24, 2011
Tracked Since Feb 18, 2026