Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified manipulations.
2006-03-23T23:06:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | realnetworks | helix_player | * | Yes |
Application | realnetworks | realone_player | * | Yes |
Application | realnetworks | realplayer | 10.0 | Yes |
Application | realnetworks | realplayer | 10.0.6 | Yes |
Application | realnetworks | realplayer | 10.5 | Yes |
Application | realnetworks | rhapsody | 3 | Yes |