Sploitus

CVE-2010-3000

5 known exploits for CVE-2010-3000

Multiple integer overflows in the ParseKnownType function in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows allow remote attackers to execute arbitrary code via crafted (1) HX_FLV_META_AMF_TYPE_MIXEDARRAY or (2) HX_FLV_META_AMF_TYPE_ARRAY data in an FLV file.

Affected products
Realplayer, Realplayer Sp
Realnetworks Realplayer
= 11.0, 11.1
Fix
Available
CVSS 2.0
9.3 HIGH
EPSS
7.5% (94th percentile)
Weakness
CWE-189
NVD status
Modified
Published
2010-08-30
CVE-2010-3000 at NVD
Authoritative description, scoring and affected products

5 known exploits for CVE-2010-3000

Proof-of-concept code and exploit modules indexed by Sploitus