RULE(RULE ID:710946)

Rule General Information
Release Date: 2014-11-11
Rule Name: FILE-OTHER Realnetworks Realplayer MP3 Files Processing Buffer Overflow Vulnerability (CVE-2007-5080)
Severity:
CVE ID:
Rule Protection Details
Description: Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute arbitrary code via a crafted Lyrics3 2.00 tag in an MP3 file, resulting in a heap-based buffer overflow.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks include arbitrary code execution and denial of service.
Affected OS: Windows, Solaris, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:26214
SecurityTrackerID:1018866
Solutions
No information about possible solutions is published. Please use an alternative product to substitude the affected software.