Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RealNetworks Helix Universal Server Long URI Dual HTTP Request Buffer Overflow Vulnerability

Helix Universal Server is a multiple type media server distributed and maintained by RealNetworks. It is available for Unix, Linux, and Microsoft Windows platforms.

A buffer overflow has been reported in the Helix Universal Server. Due to insufficient bounds checking, when the same long URI is requested via the HTTP server in two separate connections, a boundry condition error occurs. This could lead to the remote execution of arbitrary code with the privileges of the Helix Universal Server process.







 

Privacy Statement
Copyright 2009, SecurityFocus