Vulnerable Systems:
* RealOne Player, RealOne Player v2 (localized languages) and RealPlayer 10 Beta
Using a specially crafted media files such as .RP, .RT, .RAM, .RPM & .SMIL it is possible to exploit the vulnerabilities. It is possible to cause heap and stack overruns in the products. A malicious file can be found on a malicious website. Except in the case of an .RPM file the user will be required to open the attachment.
Patch Availability:
Realnetworks have supplied a patch for the mentioned issues. In their own advisory, Realnetworks describe the necessary steps in order to mitigate the vulnerabilities.