Security patches issued for RealPlayers

RealNetworks has released a patch for its popular audio-video players in an effort to prevent attacks via buffer overflows.

RealNetwork's patches address vulnerabilities in the software that would allow an attacker to run arbitrary or malicious code on a person's computer when a malicious WAV or SMIL file is processed.

Secunia, a security information company, rated the vulnerabilities as "critical."

RealNetworks released updates on Tuesday for flaws in the Mac RealPlayer 10 and these Windows players: RealPlayer 10.5, RealPlayer 10, RealPlayer Enterprise and certain versions of RealOne Player v2.

Upgrades are required for Windows players RealOne Player v1, RealPlayer 8 and certain versions of RealOne Player v2. Upgrades are also needed for the Mac RealOne Player, Linux RealPlayer 10, and the Helix Player for Linux.

Another flaw was discovered in the players in October. That vulnerability could have allowed an attacker to create fake movie files that would run a program on victims' computers.

Advertisement

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Love me, tender
    Considering how expensive and drawn-out tender processes can be to solve problems that might be very immediate, it's little wonder that the Victorian Police IT department tried to work the tender exemptions system.
  • Array Can not-so-smart meters help the NBN?
    It was interesting to witness Conroy's recent enthusiasm to spruik the NBN's role in supporting the Smart Grid, Smart City initiative. What a pity that Conroy hadn't yet seen the damning report from the Victorian auditor-general about that state's smart-meter roll-out.
  • Array Can the Telco Reform Act be win-win?
    In the second of our two programs looking at the Senate Inquiry into the Telecommunications Legislation Amendment Bill, we hear from shareholders, bureaucrats and industry groups.
  • More blogs »

Tags

Back to top

Featured