CVE-2012-0942

critical

Description

Buffer overflow in rn5auth.dll in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to execute arbitrary code via crafted authentication credentials.

References

http://www.securitytracker.com/id?1026898

http://www.securityfocus.com/bid/52929

http://helixproducts.real.com/docs/security/SecurityUpdate04022012HS.pdf

Details

Source: Mitre, NVD

Published: 2012-04-17

Updated: 2017-12-29

Risk Information

CVSS v2

Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Severity: High

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical