Lucene search

K
cveMitreCVE-2005-0455
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-0455

2005-05-0204:00:00
mitre
web.nvd.nist.gov
32
cve-2005-0455
realnetworks
realplayer
buffer overflow
remote code execution
smlparse

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

Low

EPSS

0.463

Percentile

97.5%

Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.

Affected configurations

Nvd
Node
realnetworksrealone_playerMatch1.0
OR
realnetworksrealone_playerMatch2.0
OR
realnetworksrealplayerMatch8.0
OR
realnetworksrealplayerMatch8.0win32
OR
realnetworksrealplayerMatch10.0
OR
realnetworksrealplayerMatch10.0_6.0.12.690
OR
realnetworksrealplayerMatch10.0_beta
OR
realnetworksrealplayerMatch10.5
OR
realnetworksrealplayerMatch10.5_6.0.12.1016_beta
OR
realnetworksrealplayerMatch10.5_6.0.12.1040
OR
realnetworksrealplayerMatch10.5_6.0.12.1053
VendorProductVersionCPE
realnetworksrealone_player1.0cpe:2.3:a:realnetworks:realone_player:1.0:*:*:*:*:*:*:*
realnetworksrealone_player2.0cpe:2.3:a:realnetworks:realone_player:2.0:*:*:*:*:*:*:*
realnetworksrealplayer8.0cpe:2.3:a:realnetworks:realplayer:8.0:*:*:*:*:*:*:*
realnetworksrealplayer8.0cpe:2.3:a:realnetworks:realplayer:8.0:*:win32:*:*:*:*:*
realnetworksrealplayer10.0cpe:2.3:a:realnetworks:realplayer:10.0:*:*:*:*:*:*:*
realnetworksrealplayer10.0_6.0.12.690cpe:2.3:a:realnetworks:realplayer:10.0_6.0.12.690:*:*:*:*:*:*:*
realnetworksrealplayer10.0_betacpe:2.3:a:realnetworks:realplayer:10.0_beta:*:*:*:*:*:*:*
realnetworksrealplayer10.5cpe:2.3:a:realnetworks:realplayer:10.5:*:*:*:*:*:*:*
realnetworksrealplayer10.5_6.0.12.1016_betacpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1016_beta:*:*:*:*:*:*:*
realnetworksrealplayer10.5_6.0.12.1040cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1040:*:*:*:*:*:*:*
Rows per page:
1-10 of 111

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

Low

EPSS

0.463

Percentile

97.5%