← Back

CVE-2004-1481

nvd nist
Published: Dec 31, 2004Modified: Apr 16, 2026

JSON object

Loading...
5.1
Vector
AV:N/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 4.9 / Impact: 6.4
Source: NVD

Description

Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.

Affected (20)

3 products
Helix Player
Realone Player
Realplayer
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.0
Realnetworks
Version 1.0
Version 2.0
Version 9.0.0.288
Version 9.0.0.297
Realnetworks
All versions
Version 10.0
Version 10.0
Version 10.0
Version 10.0
Version 10.0
Version 10.0 beta
Version 10.0 beta
Version 10.0_6.0.12.690
Version 10.5
Version 10.5_6.0.12.1016 beta
Version 10.5_6.0.12.1040
Version 8.0
Version 8.0
Version 8.0

References (10)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
PatchThird Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.