CVE-2016-9018
MEDIUMRealNetworks RealPlayer <18.1.5.705 - Memory Corruption
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-9018. PoCs published by Alwin Peppels.
AI-analyzed exploit summary This is a detailed analysis of a null pointer dereference vulnerability in RealPlayer's qcpfformat.dll (CVE-2016-9018), leading to a denial-of-service (DoS) condition. The writeup includes register states, disassembly, and a breakdown of the crash cause.
Description
Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and crash in RealNetworks RealPlayer 18.1.5.705 through a crafted .QCP media file.
Exploits (1)
This is a detailed analysis of a null pointer dereference vulnerability in RealPlayer's qcpfformat.dll (CVE-2016-9018), leading to a denial-of-service (DoS) condition. The writeup includes register states, disassembly, and a breakdown of the crash cause.
References (2)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H