Description
RealNetworks RealPlayer before 15.0.6.14, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer before 12.0.1.1750 do not properly handle codec frame sizes in RealAudio files, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) or possibly have unspecified other impact via a crafted file.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://service.real.com/realplayer/security/09072012_player/en/
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/78388
Scores
EPSS
0.0046
EPSS Percentile
64.3%
Details
CWE
CWE-189
Status
published
Products (44)
realnetworks/realplayer
2.1.2
realnetworks/realplayer
2.1.3
realnetworks/realplayer
2.1.4
realnetworks/realplayer
4
realnetworks/realplayer
5
realnetworks/realplayer
6
realnetworks/realplayer
7
realnetworks/realplayer
8
realnetworks/realplayer
10.0
realnetworks/realplayer
10.5
... and 34 more
Published
Sep 12, 2012
Tracked Since
Feb 18, 2026