CVE-2006-0323 EXPLOIT
9.3
HIGH · CVSS 2.0 · EPSS 16.7% (pctl 97)
Patch early
A public exploit exists.
Description
Buffer overflow in swfformat.dll in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, Rhapsody 3, and Helix Player allows remote attackers to execute arbitrary code via a crafted SWF (Flash) file with (1) a size value that is less than the actual size, or (2) other unspecified manipulations.
Scoring
| CVSS | 9.3 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
| EPSS | 16.74% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2006-03-23 |
| Last modified | 2026-06-16 |
Affected (4)
| Vendor | Product |
|---|---|
| realnetworks | helix player |
| realnetworks | realone player |
| realnetworks | realplayer |
| realnetworks | rhapsody |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | RealPlayer 10.5 (6.0.12.1040-1348) - SWF Buffer Overflow (PoC) | 2006-03-28 |
| exploit-db | RealNetworks (Multiple Products) - Multiple Buffer Overflow Vulnerabilities | 2006-03-23 |
References
- http://secunia.com/advisories/19358
- http://secunia.com/advisories/19362
- http://secunia.com/advisories/19365
- http://secunia.com/advisories/19390
- http://securityreason.com/securityalert/690
- http://securitytracker.com/id?1015806
- http://www.gentoo.org/security/en/glsa/glsa-200603-24.xml
- http://www.kb.cert.org/vuls/id/231028
- http://www.novell.com/linux/security/advisories/2006_18_realplayer.html
- http://www.redhat.com/support/errata/RHSA-2006-0257.html
- http://www.securityfocus.com/archive/1/430621/100/0/threaded
- http://www.securityfocus.com/bid/17202
- http://www.service.real.com/realplayer/security/03162006_player/en/
- http://www.vupen.com/english/advisories/2006/1057
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25408
- http://secunia.com/advisories/19358
- http://secunia.com/advisories/19362
- http://secunia.com/advisories/19365
- http://secunia.com/advisories/19390
- http://securityreason.com/securityalert/690
→ the Explorer · watch your stack · NVD