RealNetworks Helix Server 12.x Multiple DoS

Medium Nessus Network Monitor Plugin ID 5100

Synopsis

The remote media streaming server is affected by multiple denial of service vulnerabilities.

Description

According to its banner, the remote host is running version 12.x of RealNetworks Helix Server / Helix Mobile Server. Such versions are reportedly affected by multiple issues :

- By sending a specially crafted 'RTSP' (SET_PARAMETERS) request with 'DataConvertBuffer' parameter set to empty, an attacker may be able to crash the remote Helix server process. (CVE-2009-2533)

- By sending a 'SETUP' request without including a '/' character in it, a remote attacker may be able to crash the remote Helix server process. (CVE-2009-2534)

Solution

Update to RealNetworks Helix Server / Helix Mobile Server 13.0.0 or later.

See Also

http://archives.neohapsis.com/archives/bugtraq/2009-07/0122.html

http://docs.real.com/docs/security/SecurityUpdate071409HS.pdf

http://www.coresecurity.com/content/real-helix-dna

Plugin Details

Severity: Medium

ID: 5100

File Name: 5100.prm

Family: Web Servers

Published: 2009/07/21

Modified: 2016/01/21

Nessus ID: 40350

Risk Information

Risk Factor: Medium

CVSSv2

Base Score: 5

Temporal Score: 4.1

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

CVSSv3

Base Score: 5.3

Temporal Score: 4.9

Vector: CVSS3#AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Temporal Vector: CVSS3#E:F/RL:O/RC:C

Vulnerability Information

Patch Publication Date: 2009/07/14

Vulnerability Publication Date: 2009/07/17

Reference Information

CVE: CVE-2009-2533, CVE-2009-2534

BID: 35731, 35732

OSVDB: 55981, 55982