Lucene search

K
zdiDamian PutZDI-12-092
HistoryJun 08, 2012 - 12:00 a.m.

RealNetworks RealPlayer QCELP Stream Parsing Remote Code Execution Vulnerability

2012-06-0800:00:00
Damian Put
www.zerodayinitiative.com
14

EPSS

0.011

Percentile

84.8%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of RealNetworks RealPlayer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the way RealPlayer handles audio encoded with the QCELP codec. The codec allows you to specify the ‘block_size’ that is used. This size is used to create an allocation to hold the data, but a hardcoded blocksize is later used to copy data into that allocation. This could lead to remote code execution under the context of the current user.

EPSS

0.011

Percentile

84.8%