Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-4246
HistoryJan 25, 2010 - 12:00 a.m.

CVE-2009-4246

2010-01-2500:00:00
ubuntu.com
ubuntu.com
11

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.459

Percentile

97.4%

Stack-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5
6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4,
RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and
Helix Player 10.x allows user-assisted remote attackers to execute
arbitrary code via a malformed .RJS skin file that contains a web.xmb file
with crafted length values.

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.459

Percentile

97.4%