Heap-based buffer overflow in the CGIFCodec::GetPacketBuffer function in datatype/image/gif/common/gifcodec.cpp in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.0 through 11.0.4; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, and 11.0; Linux RealPlayer 10; and Helix Player 10.x allows remote attackers to execute arbitrary code via a GIF file with crafted chunk sizes that trigger improper memory allocation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-01-25T19:00:00

Updated: 2024-08-07T06:54:10.208Z

Reserved: 2009-12-09T00:00:00

Link: CVE-2009-4242

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-01-25T19:30:01.090

Modified: 2018-10-10T19:48:50.383

Link: CVE-2009-4242

cve-icon Redhat

Severity : Critical

Publid Date: 2008-09-10T00:00:00Z

Links: CVE-2009-4242 - Bugzilla