CVE-2007-6224

The RealNetworks RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll, as shipped with RealPlayer 11, allows remote attackers to cause a denial of service (browser crash) via a certain argument to the GetSourceTransport method.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*
cpe:2.3:a:realnetworks:realplayer:11.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:39

Type Values Removed Values Added
References () http://securityreason.com/securityalert/3415 - () http://securityreason.com/securityalert/3415 -
References () http://www.safehack.com/Advisory/realpdos.txt - Exploit, URL Repurposed () http://www.safehack.com/Advisory/realpdos.txt - Exploit, URL Repurposed
References () http://www.securityfocus.com/archive/1/484401/100/0/threaded - () http://www.securityfocus.com/archive/1/484401/100/0/threaded -
References () http://www.securityfocus.com/bid/26660 - () http://www.securityfocus.com/bid/26660 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/38778 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/38778 -

14 Feb 2024, 01:17

Type Values Removed Values Added
References (MISC) http://www.safehack.com/Advisory/realpdos.txt - Exploit (MISC) http://www.safehack.com/Advisory/realpdos.txt - Exploit, URL Repurposed

Information

Published : 2007-12-04 18:46

Updated : 2024-11-21 00:39


NVD link : CVE-2007-6224

Mitre link : CVE-2007-6224

CVE.ORG link : CVE-2007-6224


JSON object : View

Products Affected

microsoft

  • windows_vista
  • windows_xp

realnetworks

  • realplayer
CWE
CWE-20

Improper Input Validation