Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2649▼ 259 respecto a la semana anterior
Críticas / altas1356▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 469 respecto a la semana anterior
–

20 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)4.2%—Realnetworks Helix PlayerRealnetworks Realplayer18/2/201016/6/2026
Buffer overflow in common/util/rlstate.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a RuleBook structure with a large number of rule-separator characters that trigger heap memory corruption.
ModificadaAlta (7.5)11%—Realnetworks Helix PlayerRealnetworks Realplayer18/2/201016/6/2026
Buffer overflow in the Unescape function in common/util/hxurl.cpp and player/hxclientkit/src/CHXClientSink.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a URL argument containing a % (percent) character that is…
ModificadaAlta (9.3)8.5%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Heap-based buffer overflow in datatype/smil/common/smlpkt.cpp in smlrender.dll in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10 and 11.0.0, and Helix Player 10.x and 11.0.0 allows…
ModificadaAlta (9.3)6.8%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Buffer overflow in the RTSPProtocol::HandleSetParameterRequest function in client/core/rtspprotocol.cpp in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x…
ModificadaAlta (9.3)6.8%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Stack-based buffer overflow in protocol/rtsp/rtspclnt.cpp in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.x; RealPlayer SP 1.0.0 and 1.0.1; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, 11.0, and 11.0.1; Linux RealPlayer 10, 11.0.0, and 11.0.1; and Helix Player…
ModificadaAlta (9.3)7.3%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Stack-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows user-assisted remote attackers to execute arbitrary code via a malformed…
ModificadaAlta (9.3)6.8%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Heap-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to cause a denial of service (application crash) or…
ModificadaAlta (9.3)7.2%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Heap-based buffer overflow in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.0 through 11.0.4; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, and 11.0; Linux RealPlayer 10; and Helix Player 10.x allows remote attackers to execute arbitrary code via an SIPR codec field…
ModificadaAlta (9.3)3.4%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allow remote attackers to have an unspecified impact via a crafted media file that uses HTTP chunked transfer…
ModificadaAlta (9.3)8.5%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Heap-based buffer overflow in the CGIFCodec::GetPacketBuffer function in datatype/image/gif/common/gifcodec.cpp in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.0 through 11.0.4; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, and 11.0; Linux RealPlayer 10; and Helix…
ModificadaAlta (9.3)7.1%—Realnetworks RealplayerRealnetworks Realplayer EnterpriseRealnetworks Realplayer SPRealnetworks Helix Player25/1/201016/6/2026
Heap-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to execute arbitrary code via a file with invalid…
ModificadaMedia (4.3)2.8%—Realnetworks Helix PlayerRealnetworks Realplayer17/9/200716/6/2026
RealNetworks RealPlayer 10.1.0.3114 and earlier, and Helix Player 1.0.6.778 on Fedora Core 6 (FC6) and possibly other platforms, allow user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
ModificadaAlta (9.3)36%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks RealplayerRealnetworks Realplayer Enterprise26/6/200716/6/2026
Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer 10, 10.1, and possibly 10.5, RealOne Player, RealPlayer Enterprise, and Helix Player 10.5-GOLD and 10.0.5 through 10.0.8, allows remote attackers to execute arbitrary code via an SMIL (SMIL2)…
ModificadaAlta (9.3)17%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks RealplayerRealnetworks Rhapsody23/3/200616/6/2026
Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified…
ModificadaAlta (9.3)5.8%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks RealplayerRealnetworks Rhapsody31/12/200516/6/2026
Heap-based buffer overflow in the embedded player in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, and Helix Player allows remote malicious servers to cause a denial of service (crash) and possibly execute arbitrary code via a chunked Transfer-Encoding HTTP response in which…
ModificadaMedia (5.1)13%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks Realplayer18/11/200516/6/2026
Integer overflow in RealNetworks RealPlayer 8, 10, and 10.5, RealOne Player 1 and 2, and Helix Player 10.0.0 allows remote attackers to execute arbitrary code via an .rm movie file with a large value in the length field of the first data packet, which leads to a stack-based buffer overflow, a different vulnerability…
ModificadaMedia (5.1)13%—Realnetworks Helix PlayerRealnetworks Realplayer27/9/200516/6/2026
Format string vulnerability in Real HelixPlayer and RealPlayer 10 allows remote attackers to execute arbitrary code via the (1) image handle or (2) timeformat attribute in a RealPix (.rp) or RealText (.rt) file.
ModificadaMedia (5.1)3.8%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks Realplayer2/5/200516/6/2026
Heap-based buffer overflow in RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1, allows remote attackers to execute arbitrary code via .WAV files.
ModificadaMedia (5.1)3.4%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks Realplayer19/4/200516/6/2026
Heap-based buffer overflow in RealPlayer 10 and earlier, Helix Player before 10.0.4, and RealOne Player v1 and v2 allows remote attackers to execute arbitrary code via a long hostname in a RAM file.
ModificadaMedia (5.1)4.3%—Realnetworks Helix PlayerRealnetworks Realone PlayerRealnetworks Realplayer31/12/200416/6/2026
Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.