|
Family: SuSE Local Security Checks --> Category: infos
SUSE-SA:2005:014: RealPlayer Vulnerability Scan
Vulnerability Scan Summary Check for the version of the RealPlayer package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory SUSE-SA:2005:014 (RealPlayer).
Two security problems were found in the media player RealPlayer:
- CVE-2005-0455: A buffer overflow in the handling of .smil files.
- CVE-2005-0611: A buffer overflow in the handling of .wav files.
Both buffer overflows can be exploited remotely by providing URLs
opened by RealPlayer.
More informations can be found on this URL:
http://service.real.com/help/faq/security/050224_player/EN/
This updates fixes the problems.
Solution : http://www.suse.de/security/advisories/2005_14_realplayer.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|