Description
The GetGUID function in codecs/dmp4.dll in RealNetworks RealPlayer 16.0.3.51 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (write access violation and application crash) via a malformed .3gp file.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Aryan Bayaninejad · pythondosmultiple
https://www.exploit-db.com/exploits/39182
References (1)
Core 1
Core References
Exploit x_refsource_misc
http://packetstormsecurity.com/files/126637
Scores
EPSS
0.2763
EPSS Percentile
96.5%
Details
CWE
CWE-94
Status
published
Products (5)
realnetworks/realplayer
16.0.0
realnetworks/realplayer
16.0.0.282
realnetworks/realplayer
16.0.1.18
realnetworks/realplayer
16.0.2.32
realnetworks/realplayer
< 16.0.3.51
Published
May 20, 2014
Tracked Since
Feb 18, 2026