Security [CENTRAL] Forum - SCforum.info
23. May 2012., 17:27:40 *
Welcome, Guest. Please login or register.

Login with username, password and session length

SCforum.info - Security [CENTRAL] Forum

↑ Grab this Headline Animator

Custom Search
News: For ultra cheap bullet proof vests, hard armor ballistic plates or for advice on body armor in general visit SafeGuardClothing.com
 
  Home Help Chess Links Login Register   *

SCforum.info


furniture store



Members
Total Members: 11256
Latest: rbraik
Stats
Total Posts: 15635
Total Topics: 4336
Online Today: 2742
Online Ever: 51419
(01. January 2010., 10:27:49)

SCF UnSpam

Top Ten Antivirus Software

Friend of WOT


SCF Feedburner

SCF Facebook

SCF Twitter

Welcome to SCforum.info - Security [CENTRAL] Forum, a home of the SCF Community devoted to provide Computer related News, Alerts, Downloads and FREE Help in such a way that even the novice computer user can understand.

Getting started using our community is extremely easy, check the two steps below:

Step 1: Create an account by clicking here and wait for approval from Administrator. It's completely free with no hidden strings attached.

Step 2: If you have a computer problem and need some help, or just want to take part in opened discussions, simply browse Forum. Once you *Register an account, you can quickly post your questions and comments.

(*Registered Members get: free support, also, they can communicate privately with other members via PM, removal of this message, see fewer ads and much more...)






Pages: 1
  Print  
Author Topic: Vulnerabilities Leave RealPlayer Open To Attack  (Read 1913 times)
0 Members and 1 Guest are viewing this topic.
Samker
SCF Administrator
*****

KARMA: 86
Gender: Male
Location: Europe
Posts: 5077


Whatever doesn't kill us makes us stronger.

Google Talk
WWW
« on: 02. February 2010., 07:22:30 »



iDefense is warning users of several critical vulnerabilities in several versions of its online media application, RealPlayer, that could open the door for a remote code execution attack on both Windows and Mac systems, according to iDefense Labs security blog.

Altogether, the vulnerabilities affect RealPlayer, an application for playing online media files, in Windows versions 11.0 through 11.0.4, Windows 10.5, Mac RealPlayer 10, RealPlayer 10.1.0.3830 on Linux.

One of the critical vulnerabilities is a buffer overflow issue within RealPlayer when it handles compressed GIF files. Specifically, the error occurs in the CGIFCodec::InitDecompress() function and could lead to heap corruption, which can pave the way for attackers to execute malicious code remotely.

If exploited, an attacker could launch malicious code on a user's system by enticing a victim into opening an RTSP (Real Time Streaming Protocol) stream. Once the victim opened the stream, the attack would inject a malformed compressed GIF image into a RTSP stream, launching malicious code onto the user's system.

Additionally, an attacker could also host a malicious Web site and then entice a victim to visit the page, which would immediately download malware onto their systems.

iDefense Labs said that other attack vectors might exist.

Additionally, RealNetworks, which develops RealPlayer application, has released patches addressing two other critical integer overflow vulnerabilities that can lead to remote code execution attacks if left unaddressed.

One of those vulnerabilities includes an integer overflow issue that was detected when the RealPlayer system undergoes a "chunked" transfer encoding method, a process which breaks the file the server is sending into digestible "chunks." The error occurs when the server is processing the "chunks," resulting in a heap overflow vulnerability and opening up a security hole that enables remote attackers to launch malicious code on a user running the application.

Attackers can exploit the flaw by persuading a user to use RealPlayer when opening a specially crafted media file, usually conducted via an infected Web page using the RealPlayer plug-in or by a link embedded in an e-mail directing them to a malicious file. Attackers will then be able to install code allowing them to infiltrate and take complete control of a user's computer.

Meanwhile, a third memory corruption error exists in the CMediumBlockAllocator::Alloc method, that can also open up a security hole enabling malicious attacks.

In a successful attack scenario, a hacker would also have to entice a RealPlayer user to open a specially crafted media file, typically through some social engineering scheme. The user could become infected by opening a contaminated Web site or infected link, embedded in an e-mail, redirecting a user to a malicious site.

iDefense recommends that users who run RealPlayer applications apply the available patches as soon as possible.

(ChannelWeb)
Logged

Security [CENTRAL] Forum - SCforum.info
« on: 02. February 2010., 07:22:30 »



 Logged
Pages: 1
  Print  
 
Jump to:  

Enter your email address to receive daily email with 'SCforum.info - Security CENTRAL Forum' newest content:

Terms of Use | Privacy Policy | Advertising
Powered by MySQL Powered by PHP Powered by SMF | SMF © 2011, Simple Machines
TinyPortal © Bloc
Valid XHTML 1.0! Valid CSS!


Google visited last this page 09. May 2012., 08:44:46