← Back

CVE-2013-7260

nvd nist
Published: Jan 3, 2014Modified: Apr 29, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple stack-based buffer overflows in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allow remote attackers to execute arbitrary code via a long (1) version number or (2) encoding declaration in the XML declaration of an RMP file, a different issue than CVE-2013-6877.

Affected (50)

1 product
Realplayer
Configuration A
42 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Up to 17.0.4.60
Version 10.0
Version 10.5
Version 11.0.1
Version 11.0.2.1744
Version 11.0.2.2315
Version 11.0.2
Version 11.0.3
Version 11.0.4
Version 11.0.5
Version 11.0
Version 11.1.3
Version 11.1
Version 11_build_6.0.14.748
Version 12.0.0.1444
Version 12.0.0.1548
Version 14.0.0
Version 14.0.1.609
Version 14.0.1
Version 14.0.2
Version 14.0.3
Version 14.0.4
Version 14.0.5
Version 15.0.0
Version 15.0.4.43
Version 15.0.4
Version 15.0.5.109
Version 15.0.6.14
Version 15.02.71
Version 16.0.0.282
Version 16.0.0
Version 16.0.1.18
Version 16.0.2.32
Version 16.0.3.51
Version 2.1.2
Version 2.1.3
Version 2.1.4
Version 4
Version 5
Version 6
Version 7
Version 8
Configuration B
8 vulnerable
Vulnerable SoftwareAffected Versions
Realnetworks
Version 10.0 10.0.0.305
Version 10.0 10.0.0.331
Version 10.0 10.0.0.352
Version 10.1 10.0.0.396
Version 10.1 10.0.0.412
Version 10.1 10.0.0._481
Version 12.0.0.1701
Version 12.0.1.1737

References (10)

Source: cve@mitre.org
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.