← Back

CVE-2012-0923

nvd nist
Published: Feb 8, 2012Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

The RV20 codec in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, does not properly handle the frame size array, which allows remote attackers to execute arbitrary code via a crafted RV20 RealVideo video stream.

Affected (33)

2 products
Realplayer
Realplayer Sp
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 14.0.0
Version 14.0.1.609
Version 14.0.1.633
Version 14.0.1
Version 14.0.2
Version 14.0.3
Version 14.0.4
Version 14.0.5
Version 14.0.6
Version 14.0.7
Configuration B
11 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 11.0.1
Version 11.0.2.1744
Version 11.0.2.2315
Version 11.0.2
Version 11.0.3
Version 11.0.4
Version 11.0.5
Version 11.0
Version 11.1.3
Version 11.1
Version 11_build_6.0.14.748
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 15.0.0
Version 15.0.1.13
Configuration D
10 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.5
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 1.1

References (8)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.