Highly critical RealPlayer flaws
p2pnet.net News:- RealNetworks has had to build new versions of its RealPlayer to combat what Secunia describes as Highly Critical security flaws which can be exploited by hackers looking to compromise users’ systems.
Most Windows, Mac and Linux apps are affected. Only hand-helds aren’t.
The first security problems centres on a boundary error under which the processing of WAV files can be exploited to cause a buffer overflow via a specially crafted WAV file.
The second is a boundary error which means the processing of SMIL files can be exploited to cause a stack-based buffer overflow via a tailored SMIL file.
“Successful exploitation of the vulnerabilities allows execution of arbitrary code,” says Secunia.
Go here to see what systems are affected, and how Real suggests they should be dealt with.
Something you think we should know? tips[at]p2pnet.net
===================
See:-
Secunia - RealPlayer WAV and SMIL File Handling Buffer Overflows, March 3, 2005
Again - Highly critical RealNetworks flaws, p2pnet, October 1, 2005
BoomTown - GTA advert ban, March 2, 2005





p2pnet - rss feed: 