CVE-2007-5080

N/A Unknown
Published: October 31, 2007 Modified: April 23, 2026
View on NVD

Description

Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute arbitrary code via a crafted Lyrics3 2.00 tag in an MP3 file, resulting in a heap-based buffer overflow.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/27361
Source: cve@mitre.org
Patch Vendor Advisory
http://www.kb.cert.org/vuls/id/759385
Source: cve@mitre.org
US Government Resource
http://secunia.com/advisories/27361
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://service.real.com/realplayer/security/10252007_player/en/
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.attrition.org/pipermail/vim/2007-October/001841.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/759385
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.securityfocus.com/bid/26214
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1018866
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/3628
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/37434
Source: af854a3a-2127-422b-91ae-364da2661108

18 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
7.7%
94th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

realnetworks