Short Name |
RTSP:HELIX-RN5AUTH |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
RTSP |
Keywords |
RealNetworks Helix Server rn5auth Credential Parsing Buffer Overflow |
Release Date |
2013/01/07 |
Update Number |
2222 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in the RealNetworks Helix Server. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the application.
RealNetworks Helix Server is prone to multiple remote vulnerabilities. Attackers can exploit theses issues to execute arbitrary code within the context of the affected application, cause denial-of service conditions, retrieve potentially sensitive information, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, and steal cookie-based authentication credentials. RealNetworks Helix Server 14.2.0.212 is vulnerable; other versions may also be affected.