RealPlayer Skin File Remote Buffer Overflow

This script is Copyright (C) 2004-2016 Tenable Network Security, Inc.


Synopsis :

The remote Windows application is affected by a remote buffer
overflow.

Description :

According to its build number, the installed version of RealPlayer /
RealOne Player for Windows may allow an attacker to execute arbitrary
code on the remote host, with the privileges of the user running
RealPlayer because of an overflow vulnerability in the third-party
compression library 'DUNZIP32.DLL'.

To do so, an attacker would need to send a corrupted skin file (.RJS)
to a remote user and have him open it using RealPlayer.

See also :

http://seclists.org/fulldisclosure/2004/Oct/1044
http://service.real.com/help/faq/security/041026_player/EN/

Solution :

Upgrade according to the vendor advisory referenced above.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 8.1
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows

Nessus Plugin ID: 15789 ()

Bugtraq ID: 11555

CVE ID: CVE-2004-1094

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now