CVE-2018-13121
MEDIUMRealnetworks Realone Player - Memory Corruption
Title source: ruleDescription
RealOne Player 2.0 Build 6.0.11.872 allows remote attackers to cause a denial of service (array out-of-bounds access and application crash) via a crafted .aiff file.
Scores
CVSS v3
5.5
EPSS
0.0024
EPSS Percentile
47.5%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Classification
CWE
CWE-119
Status
published
Affected Products (1)
realnetworks/realone_player
Timeline
Published
Jul 03, 2018
Tracked Since
Feb 18, 2026