Description
Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.0.1, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted StreamTitle tag in an ICY SHOUTcast stream, related to the SMIL file format.
Published: 2010-12-14
Score: 9.3 Critical
EPSS: 2.8% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2010-2999 Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.0.1, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted StreamTitle tag in an ICY SHOUTcast stream, related to the SMIL file format.
History

No history.

Subscriptions

Apple Mac Os X
Linux Linux Kernel
Realnetworks Realplayer Realplayer Sp
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T02:55:46.691Z

Reserved: 2010-08-13T00:00:00.000Z

Link: CVE-2010-2997

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-12-14T16:00:02.913

Modified: 2026-04-29T01:13:23.040

Link: CVE-2010-2997

cve-icon Redhat

Severity : Critical

Publid Date: 2010-12-10T00:00:00Z

Links: CVE-2010-2997 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses