Vulnerability Details CVE-2002-1014
Buffer overflow in RealJukebox 2 1.0.2.340 and 1.0.2.379, and RealOne Player Gold 6.0.10.505, allows remote attackers to execute arbitrary code via an RFS skin file whose skin.ini contains a long value in a CONTROLnImage argument, such as CONTROL1Image.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.125
EPSS Ranking 93.6%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2002-1014
-
cpe:2.3:a:realnetworks:realjukebox_2:1.0.2.340
-
cpe:2.3:a:realnetworks:realjukebox_2:1.0.2.379
-
cpe:2.3:a:realnetworks:realjukebox_2_plus:1.0.2.340
-
cpe:2.3:a:realnetworks:realjukebox_2_plus:1.0.2.379
-
cpe:2.3:a:realnetworks:realone_player:6.0.10.505