All Threats

Viruses

Hackers

Spam

Whole site    Viruses
  
About Hackers
Analysis
News
Glossary
Weblog



 
Virus Encyclopedia
Virus Encyclopedia

Learn about worms, viruses, Trojans and more in our Virus Encyclopedia.

About Spam
About Spam

Read about spam and spammers in our About Spam section.

 

  Home / Hackers / About Hackers / Software Vulnerabilities / Examples and Descriptions / SA33810

RealPlayer IVR File Processing Two Vulnerabilities

Secunia ID

SA33810

CVE-ID

CVE-2009-0375, CVE-2009-0376

Release Date

10 Feb 2009

Last Change

22 Jan 2010

Criticality

Highly Critical

Solution Status

Vendor Patch

Software

RealPlayer 11.x

Where

From remote

Impact
DoS (Denial of Service)

This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system.


System access

This covers vulnerabilities where malicious people are able to gain system access and execute arbitrary code with the privileges of a local user.


Description

Some vulnerabilities have been reported in RealPlayer, which can be exploited by malicious people to compromise a vulnerable system.

1) An input validation error within the processing of Internet Video Recording (IVR) files can be exploited to cause a memory corruption when a specially crafted IVR file is viewed.

2) An unspecified error within the processing of IVR files can be exploited to write a NULL-byte to an arbitrary memory address via an overly long file name length value within a specially crafted IVR file.

Successful exploitation potentially allows execution of arbitrary code e.g. when a user visits a malicious web page.

Solution

Update to the newest RealPlayer version.

Windows:
http://client-software.real.com/free/windows/installer/stubinst/stub/rp12/R51GSEC/RealPlayerSPGold.exe

Max OS X:
Upgrade to the latest version of RealPlayer 11.
http://www.real.com/mac/realplayer

Linux:
http://www.real.com/linux

Reported by

1) Haifei Li, Fortinet's FortiGuard Global Security Research Team
2) Independently reported by Haifei Li of Fortinet's FortiGuard Global Security Research Team and by John Rambo via TippingPoint's Zero Day Initiative

Original Advisory

RealNetworks:
http://service.real.com/realplayer/security/01192010_player/en/

Fortinet's FortiGuard Global Security Research Team:
http://www.fortiguardcenter.com/advisory/FGA-2009-04.html

ZDI:
2) http://www.zerodayinitiative.com/advisories/ZDI-10-009/




 

Copyright © 1996 - 2010
Kaspersky Lab
Industry-leading Antivirus Software
All rights reserved
 

Email: webmaster@viruslist.com