Vulnerability Details CVE-2005-3677
Buffer overflow in RealNetworks RealPlayer 10 and 10.5 allows remote attackers to execute arbitrary code via a crafted image in a RealPlayer Skin (RJS) file. NOTE: due to the lack of details, it is unclear how this is different than CVE-2005-2629 and CVE-2005-2630, but the vendor advisory implies that it is different.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.035
EPSS Ranking 87.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2005-3677
-
cpe:2.3:a:realnetworks:realplayer:10.0
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1040
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1053
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1056
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1059
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1069
-
cpe:2.3:a:realnetworks:realplayer:10.5_6.0.12.1235