You are here: silicon.com > Software > Security Strategy

Security Strategy

'Highly critical' RealPlayer flaw patched up

Buffer overflow faults letting in those pesky hackers

Tags: realnetworks

By John Borland

Published: 22 April 2005 09:35 GMT

RealNetworks has released a security patch aimed at plugging a flaw in its multimedia software that could allow hackers to run their own code on people's computers.

The flaw, rated a "highly critical" risk by security company Secunia, affects most recent consumer versions of the RealPlayer media player software, for both Windows and Macintosh operating systems. Also at risk are some, but not the most recent, versions of the software for Linux. The flaw exists in some RealOne Player versions too, RealNetworks said.

The company released the patch for the flaw on Tuesday.

"RealNetworks has received no reports of machines compromised as a result of the now-remedied vulnerabilities," the company said on its website. "RealNetworks takes all security vulnerabilities very seriously."

So-called buffer overflow faults, which can be exploited by a hacker to swamp a program with unexpected information and use the resulting data spillover to run malicious code, have become a common discovery in many of the most popular software programs.

The Mozilla Foundation's Firefox web browser, Apple Computer's iSync program and numerous kinds of Microsoft software have all been found to carry similar risks and have been patched over time.

John Borland writes for CNET News.com.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Linux System Administrator 35,000 - London - Media

Systems Administrator, you will carry out the following key functions: * Installing and configuring servers, switches and firewalls as required in ...

Web Applications Vulnerability Tester

You will also have reasonable coding experience and be able to check code for vulnerabilities before it is released. You will conduct regular ...

Draw Engineer

Key Accountabilities or Duties: • Assist in the operation of all Lottery Draws in accordance with approved security procedures, reducing ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: