← Back

CVE-2011-2955

nvd nist
Published: Aug 18, 2011Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5, when an Embedded RealPlayer is used, allows remote attackers to execute arbitrary code via vectors related to a modal dialog.

Affected (24)

2 products
Realplayer
Realplayer Sp
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 11.0
Version 11.1
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 14.0.0
Version 14.0.1
Version 14.0.2
Version 14.0.3
Version 14.0.4
Version 14.0.5
Configuration C
10 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.5
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 1.1
Configuration D
6 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 2.0
Version 2.1.2
Version 2.1.3
Version 2.1.4
Version 2.1.5
Version 2.1

Related CWEs

References (4)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.