Lucene search

K
zdiAlexander GavrunZDI-12-050
HistoryMar 22, 2012 - 12:00 a.m.

RealNetworks RealPlayer mp4fformat rdrf Remote Code Execution Vulnerability

2012-03-2200:00:00
Alexander Gavrun
www.zerodayinitiative.com
15

EPSS

0.011

Percentile

84.4%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of RealNetworks Realplayer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within mp4fformat. The vulnerability resides in adding 1 to a trusted size value being taken out of the file data. The size value is then used in an operator_new call. This can be leveraged when the pointer returned from the operator_new is used in a memcpy as the destination buffer pointer. This vulnerability can result in remote code execution under the context of the user running the application.

EPSS

0.011

Percentile

84.4%