CVE ID | CVE-2012-0922 |
CVSS SCORE | 7.5, AV:N/AC:L/Au:N/C:P/I:P/A:P |
AFFECTED VENDORS |
RealNetworks |
AFFECTED PRODUCTS |
RealPlayer |
VULNERABILITY DETAILS |
The specific flaw exists within the rvrender module. When parsing an IVR file, the code within this module does not account for a negative value for the "RMFF 1.0 Flags" element within the input data. By providing a specially crafted file an attacker is able to achieve a program state that results in a function pointer value being retrieved from file data and subsequently called. This vulnerability can be leveraged to execute code under the context of the user running the application. |
ADDITIONAL DETAILS |
RealNetworks has issued an update to correct this vulnerability. More details can be found at:
http://service.real.com/realplayer/security/02062012_player/en/ |
DISCLOSURE TIMELINE |
|
CREDIT | Luigi Auriemma |