CVE-2013-6877
RealPlayer < 17.0.4.61 (Windows) and < 12.0.1.1738 (Mac) - Remote Code Execution via RMP TRACKID Element
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-6877.
AI-analyzed exploit summary This exploit leverages a buffer overflow in RealNetworks RealPlayer by crafting a malicious .rmp file with a long XML version attribute. It uses ROP gadgets to bypass DEP and execute a calc.exe payload via shellcode.
Description
Heap-based buffer overflow in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allows remote attackers to execute arbitrary code via a long string in the TRACKID element of an RMP file, a different vulnerability than CVE-2013-7260.
Exploits (1)
This exploit leverages a buffer overflow in RealNetworks RealPlayer by crafting a malicious .rmp file with a long XML version attribute. It uses ROP gadgets to bypass DEP and execute a calc.exe payload via shellcode.