RULE(RULE ID:705277)

Rule General Information
Release Date: 2013-04-19
Rule Name: Realplayer vidplin.dll AVI Header Parsing code execution (CVE-2010-4393)
Severity:
CVE ID:
Rule Protection Details
Description: A vulnerability has been reported in RealNetworks's Realplayer. The vulnerability is due to a claimed buffer overflow within vidplin.dll while parsing stream headers is an AVI file. Reportedly user supplied data is copied into a buffer without verifying the length of the buffer leading to a buffer overflow.
Impact: Remote code execution
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: CVE-2010-4393
Solutions
Update vendor's patch.