Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the Unescape function in common/util/hxurl.cpp and player/hxclientkit/src/CHXClientSink.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a URL argument containing a % (percent) character that is not followed by two hex digits.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Realnetworks Helix Player和RealPlayer Unescape多个缓冲区溢出漏洞
Vulnerability Description
RealNetworks RealPlayer和Helix Player是流行的媒体播放程序。 Helix Player和RealPlayer程序common/util/hxurl.cpp 和 player/hxclientkit/src/CHXClientSink.cpp函数Unescape存在缓冲区溢出漏洞。远程攻击者可以通过包含%字符(而该字符不是在两个十六进制数字的后面)的URL,导致拒绝服务(应用崩溃)或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A