Vulnerability Details CVE-2002-1321
Multiple buffer overflows in RealOne and RealPlayer allow remote attackers to execute arbitrary code via (1) a Synchronized Multimedia Integration Language (SMIL) file with a long parameter, (2) a long long filename in a rtsp:// request, e.g. from a .m3u file, or (3) certain "Now Playing" options on a downloaded file with a long filename.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.038
EPSS Ranking 87.7%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2002-1321
-
cpe:2.3:a:realnetworks:realone_player:2.0
-
cpe:2.3:a:realnetworks:realplayer:*
-
cpe:2.3:a:realnetworks:realplayer:6.0
-
cpe:2.3:a:realnetworks:realplayer:7.0
-
cpe:2.3:a:realnetworks:realplayer:8.0