Warning: Undefined array key "advisoryid" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/34252_1edcd913e2b52798c5b9126b8927230e on line 19
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
______________________________________________________________________________
SUSE Security Announcement
Package: RealPlayer
Announcement ID: SUSE-SA:2005:037
Date: Mon, 27 Jun 2005 12:00:00 +0000
Affected Products: SUSE LINUX 9.2, 9.3
Novell Linux Desktop 9
Vulnerability Type: remote code execution
Severity (1-10): 8
SUSE Default Package: yes
Cross-References: CAN-2005-1766
CAN-2005-1277
Content of This Advisory:
1) Security Vulnerability Resolved:
remote buffer overflow in RealPlayer
Problem Description
2) Solution or Work-Around
3) Special Instructions and Notes
4) Package Location and Checksums
5) Pending Vulnerabilities, Solutions, and Work-Arounds:
See SUSE Security Summary Report.
6) Authenticity Verification and Additional Information
______________________________________________________________________________
1) Problem Description and Brief Discussion
Various security problems were found in RealPlayer that allow a remote
attacker to execute code in the local player by providing handcrafted
files.
See https://www.real.com/ too.
The following security bugs are listed:
- To fashion a malicious MP3 file to allow the overwriting of a local
file or execution of an ActiveX control on a customer's machine.
- To fashion a malicious RealMedia file which uses RealText to cause
a heap overflow to allow an attacker to execute arbitrary code on a
customer's machine.
- To fashion a malicious AVI file to cause a buffer overflow to allow
an attacker to execute arbitrary code on a customer's machine.
- Using default settings of earlier Internet Explorer browsers,
a malicious website could cause a local HTML file to be created and
then trigger an RM file to play which would then reference this local
HTML file. (Not applicable to Linux.)
The updated package fixes these problems.
These are tracked by the Mitre CVE IDs CAN-2005-1766 and CAN-2005-1277.
This bug affects all SUSE Linux versions including RealPlayer.
However, due to the binary only nature of RealPlayer we are only able
to provide fixed packages for SUSE Linux 9.2, 9.3 and Novell Linux
Desktop 9.
For the SUSE Linux versions containing RealPlayer 8 we are no longer
able to offer security updates (as announced in SUSE-SA:2005:04).
2) Solution or Work-Around
Please install the upgraded packages.
3) Special Instructions and Notes
Please restart web browser which have Real Media content open.
4) Package Location and Checksums
The preferred method for installing security updates is to use the YaST
Online Update (YOU) tool. YOU detects which updates are required and
automatically performs the necessary steps to verify and install them.
Alternatively, download the update packages for your distribution manually
and verify their integrity by the methods listed in Section 6 of this
announcement. Then install the packages using the command
rpm -Fhv
Warning: Undefined array key "block1" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/34252_c1d2d4f425d79c8c327f2b8603847ec6 on line 11
Get the latest Linux and open source security news straight to your inbox.