ZDI-11-114: RealNetworks Helix Server x-wap-profile Format String Remote Code Execution Vulnerability

0
86

Posted by Fly, Kate on Apr 01

ZDI-11-114: RealNetworks Helix Server x-wap-profile Format String Remote Code Execution Vulnerability

http://www.zerodayinitiative.com/advisories/ZDI-11-114

April 1, 2011

— CVE ID:
CVE-2010-4235

— CVSS:
10, (AV:N/AC:L/Au:N/C:C/I:C/A:C)

— Affected Vendors:
RealNetworks

— Affected Products:
RealNetworks Helix Server

— TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by…

Source: ZDI-11-114: RealNetworks Helix Server x-wap-profile Format String Remote Code Execution Vulnerability