CVE-2005-0455 describes a stack-based buffer overflow in RealNetworks RealPlayer 10.5 and earlier, as well as RealOne Player V1 and V2. This vulnerability allows remote attackers to execute arbitrary code by supplying a specially crafted .SMIL file containing an overly large system-screen-size value. The attack is network-based but requires high attack complexity, potentially leading to partial compromise of confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, exploit modules are available in Metasploit and ExploitDB, indicating public exploit code exists, though there is minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| N/A | N/A | n/aCNA affected |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.