CVE-2005-0455
Last modified
CVE-2005-0455 is a vulnerability of currently unknown severity. Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.. EPSS estimates a 53.99% chance of exploitation in the next 30 days.
Description
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.
Metrics
References
- http://service.real.com/help/faq/security/050224_playerPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=209&type=vulnerabilitiesPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-265.htmlPatch, Vendor Advisory
- http://service.real.com/help/faq/security/050224_playerPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=209&type=vulnerabilitiesPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-265.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0455?
How severe is CVE-2005-0455?
How do I fix CVE-2005-0455?
Are you affected by CVE-2005-0455?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
