CVE-2012-2408

Realnetworks Realplayer < 15.0.5.109 - Memory Corruption

Title source: rule

Description

The AAC SDK in RealNetworks RealPlayer before 15.0.6.14, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer before 12.0.1.1750 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted AAC file that is not properly handled during decoding.

Scores

EPSS 0.0043
EPSS Percentile 62.2%

Classification

CWE
CWE-119
Status draft

Affected Products (44)

realnetworks/realplayer < 15.0.5.109
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
realnetworks/realplayer
... and 29 more

Timeline

Published Sep 12, 2012
Tracked Since Feb 18, 2026