CVE-2016-9018

Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and crash in RealNetworks RealPlayer 18.1.5.705 through a crafted .QCP media file.
References
Link Resource
http://www.securityfocus.com/bid/94239 Third Party Advisory VDB Entry
https://www.exploit-db.com/exploits/40617/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:realnetworks:realplayer:18.1.5.705:*:*:*:*:*:*:*

History

No history.

Information

Published : 2016-10-28 15:59

Updated : 2023-12-10 11:46


NVD link : CVE-2016-9018

Mitre link : CVE-2016-9018

CVE.ORG link : CVE-2016-9018


JSON object : View

Products Affected

realnetworks

  • realplayer
CWE
CWE-476

NULL Pointer Dereference