Security:
News ToolsReg Shops |
Unpatched RealPlayer bug paves way for drive-by downloadsActiveX-ploitPublished Wednesday 12th March 2008 17:59 GMT An unpatched bug in RealPlayer leaves the media player open to drive-by-download attacks, which hackers use to trick prospective marks into visiting maliciously constructed websites. The vulnerability stems from coding errors in a RealPlayer ActiveX control (rmoc3260.dll), which enables content to be played within a user's Internet Explorer browser. The ActiveX control fails to properly handle multiple properties, including Console, creating a heap memory corruption risk. RealPlayer version 11.0.1 is confirmed as vulnerable. Other versions of the media player may also be flawed. Security clearing house Secunia advises users to kill the affected ActiveX control pending the availability of a patch from Real Networks. Instructions and pointers on how to disable RealPlayer ActiveX controls in Internet Explorer can be found in an advisory by US CERT here. Details of the vulnerability were posted by its discoverer, Elazar Broad, on a full disclosure mailing list on Monday. A similar vulnerability involving the interaction between RealPlayer and IE, but affecting a different ActiveX control, was discovered last October. ® 20 comments posted — Comment period finished A very apt typo in the titlePosted: 18:19 12th March 2008 RealPlayer?Posted: 18:50 12th March 2008 RealPlayer?Posted: 19:03 12th March 2008 How shameful and unprofessional of Elazar BroadPosted: 19:44 12th March 2008 Real Player = Real ShitPosted: 19:50 12th March 2008
Track this type of story as a custom Atom/RSS feed or by email.
|
|
Top 20 stories • All The Week’s Headlines • Archive • Search