.:[ packet storm ]:.
                             
beyond paranoid
beyond paranoid

 ///  File Name:ZDI-08-047.txt
Description:
A vulnerability allows remote attackers to execute code on vulnerable installations of RealPlayer. User interaction is required in that a user must visit a malicious web site. The specific flaw exists in the rmoc3260 ActiveX control. Specifying malicious values for the 'Controls' or 'Console' properties with a specific timing results in a memory corruption which can lead to code execution under the context of the current user.
Author:Peter Vreugdenhil
Homepage:http://www.zerodayinitiative.com/
File Size:3576
Related CVE(s):CVE-2008-1309
Last Modified:Jul 25 21:01:42 2008
MD5 Checksum:c1dc5a2b4f3ec5b589d8087402e03e9d

 .:. Back