toggle

AAPL Stock: 108 ( + 1.02 )

Printed from http://www.macnn.com

Real patches critical RealPlayer vulnerabilities

updated 11:00 am EDT, Mon July 28, 2008

RealPlayer vulnerabilities

Real has fixed four "highly critical" security issues spread across the Mac, Windows and Linux versions of RealPlayer, according to a Secunia report. While two of the vulnerabilities are Windows-only, in that they relate to ActiveX controls, at least one is known to be universal. In this a design flaw is said to exist within the handling of frames in Shockwave Flash files, which in an unpatched copy of the software, could be used to create a heap-based buffer overflow.

The last vulnerability is described only as an "unspecified error," which could be used to "reference local resources." Affected Mac versions of RealPlayer include v10 and v10.1; both Secunia and Real recommend upgrading to v11 to solve the problem.




by MacNN Staff

POST TOOLS:

TAGS :

toggle

Comments

  1. dlstarr7

    Joined: Dec 1969

    +1

    Real?

    What is Real Player?

  1. MacScientist

    Joined: Dec 1969

    0

    re: Real?

    Real is a commercial company that produced proprietary formats for audio and video content on the Internet. It is a longtime competitor for QuickTime and Windows Media in the area of Internet-based media content. You may find its website here:

    http://www.real.com/

Login Here

Not a member of the MacNN forums? Register now for free.

toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

Tablo DVR

With over-the-top content options growing past Hulu and Netflix, consumers may be finding it harder to justify paying a monthly fee fo ...

Sound Blaster Roar Bluetooth speaker

There could very well be a new king of the hill for Bluetooth speakers, with Sound Blaster's recent entry into the marketplace. Bring ...

Kenu Airframe Plus

Simple, stylish and effective, the Kenu Airframe + portable car mount is the latest addition to Kenu's lineup. Released earlier this ...

toggle

Most Commented