Vulnerable Systems:
* RealPlayer SP 1.1.4
* RealPlayer Enterprise 2.1.2
* Mac RealPlayer 11.1
* Linux RealPlayer 11.0.2.1744
Immune Systems:
* RealPlayer SP 1.1.5
* RealPlayer Enterprise 2.1.3
* Mac RealPlayer 12.0.0.1444
* Linux RealPlayer 11.0.2.2315
The vulnerability is caused due to an error in the handling of errors encountered while decoding "cook" encoded audio content. This can be exploited to trigger the use of uninitialised memory and potentially free an arbitrary address.
Successful exploitation may allow execution of arbitrary code.