← Back

CVE-2012-2406

nvd nist
Published: May 18, 2012Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, does not properly parse ASMRuleBook data in RealMedia files, which allows remote attackers to execute arbitrary code via a crafted file.

Affected (41)

2 products
Realplayer
Realplayer Sp
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Up to 15.0.4
Version 10.0
Version 10.5
Version 11.0.1
Version 11.0.2.1744
Version 11.0.2.2315
Version 11.0.2
Version 11.0.3
Version 11.0.4
Version 11.0.5
Version 11.0
Version 11.1.3
Version 11.1
Version 11_build_6.0.14.748
Version 12.0.0.1444
Version 12.0.0.1548
Version 14.0.0
Version 14.0.1.609
Version 14.0.1
Version 14.0.2
Version 14.0.3
Version 14.0.4
Version 14.0.5
Version 15.0.0
Version 15.0.1.13
Version 15.02.71
Version 4
Version 5
Version 6
Version 7
Version 8
Version 1.1.5
Configuration B
9 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.5
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1

References (10)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.