The drv2.dll (aka RV20 decompression) module in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, RealPlayer Enterprise 2.1.2 and 2.1.3, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted value of an unspecified length field in an RV20 video stream.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-12-14T15:00:00
Updated: 2024-08-07T03:43:14.669Z
Reserved: 2010-12-02T00:00:00
Link: CVE-2010-4378
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-12-14T16:00:04.430
Modified: 2024-11-21T01:20:49.177
Link: CVE-2010-4378
Redhat