Description
The drv2.dll (aka RV20 decompression) module in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, RealPlayer Enterprise 2.1.2 and 2.1.3, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted value of an unspecified length field in an RV20 video stream.
Published: 2010-12-14
Score: 9.3 Critical
EPSS: 3.1% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2010-4347 The drv2.dll (aka RV20 decompression) module in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, RealPlayer Enterprise 2.1.2 and 2.1.3, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted value of an unspecified length field in an RV20 video stream.
History

No history.

Subscriptions

Linux Linux Kernel
Realnetworks Realplayer Realplayer Sp
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T03:43:14.669Z

Reserved: 2010-12-02T00:00:00.000Z

Link: CVE-2010-4378

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-12-14T16:00:04.430

Modified: 2026-04-29T01:13:23.040

Link: CVE-2010-4378

cve-icon Redhat

Severity : Critical

Publid Date: 2010-12-10T00:00:00Z

Links: CVE-2010-4378 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses