RealNetworks Helix Server 14.x < 14.3.x Multiple Vulnerabilities

Critical Nessus Network Monitor Plugin ID 6502

Synopsis

The remote media streaming server is affected by multiple vulnerabilities.

Description

Such versions are potentially affected by multiple vulnerabilities.

- Administrative and user credentials are insecurely stored in a flat file database. This file may be accessed by local users to disclose passwords stored in clear text. (CVE-2012-1923)

- A buffer overflow exists in the code that parses authentication credentials. It may be possible for a remote attacker to exploit this issue and execute arbitrary code. (CVE-2012-0942)

- Multiple unspecified cross-site scripting vulnerabilities. (CVE-2012-1984)

- A specially crafted malfored URL can cause the server process to crash if opened by an administrator. (CVE-2012-1985)

- Establishing and immediately closing a TCP connection on port 705 can cause the SNMP Master Agent to crash (CVE-2012-2267)

- A specially crafted Open-PDU request sent to the SNMP Master Agent can cause it to crash due to an unhandled exception. (CVE-2012-2268)

Solution

Upgrade to RealNetworks Helix Server / Helix Mobile Server 14.3.x or later.

See Also

http://secunia.com/secunia_research/2012-8

http://secunia.com/secunia_research/2012-9

http://www.securityfocus.com/archive/1/522249/30/0/threaded

http://www.securityfocus.com/archive/1/522250/30/0/threaded

http://helixproducts.real.com/docs/security/SecurityUpdate04022012HS.pdf

Plugin Details

Severity: Critical

ID: 6502

File Name: 6502.prm

Family: Generic

Published: 2012/06/26

Modified: 2017/02/02

Nessus ID: 58724

Risk Information

Risk Factor: Critical

CVSSv2

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

CVSSv3

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS3#AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS3#E:U/RL:O/RC:C

Vulnerability Information

Patch Publication Date: 2012/04/02

Vulnerability Publication Date: 2012/04/09

Reference Information

CVE: CVE-2012-0942, CVE-2012-1923, CVE-2012-1984, CVE-2012-1985, CVE-2012-2267, CVE-2012-2268

BID: 52929

IAVB: 2012-B-0043