VDB
CVE-2010-0417
CVE-2010-0417
PUBLISHED
Reported by redhat · Published February 18, 2010
Buffer overflow in common/util/rlstate.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a RuleBook structure with a large number of rule-separator characters that trigger heap memory corruption.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | n/a, n/a, n/a |
Timeline
- Feb 18, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- RHSA-2010:0094 vendor-advisoryx_refsource_REDHAT
- oval:org.mitre.oval:def:11364 vdb-entrysignaturex_refsource_OVAL
- 38450 third-party-advisoryx_refsource_SECUNIA
- [common-cvs] 20080114 util rlstate.cpp,1.9,1.10 mailing-listx_refsource_MLIST
- x_refsource_CONFIRM
- x_refsource_CONFIRM