CVE-2010-1318
Stack-based buffer overflow in the AgentX::receive_agentx function in AgentX++ 1.4.16, as used in RealNetworks Helix Server and Helix Mobile Server 11.x through 13.x and other products, allows remote attackers to execute arbitrary code via unspecified…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 58.1%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Stack-based buffer overflow in the AgentX::receive_agentx function in AgentX++ 1.4.16, as used in RealNetworks Helix Server and Helix Mobile Server 11.x through 13.x and other products, allows remote attackers to execute arbitrary code via unspecified vectors.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 58.05% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- realnetworks/helix mobile server · realnetworks/helix server · realnetworks/helix server mobile
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/39279Vendor Advisory
- http://www.realnetworks.com/uploadedFiles/Support/helix-support/SecurityUpdate041410HS.pdf
- http://www.securityfocus.com/bid/39490
- http://www.vupen.com/english/advisories/2010/0889Vendor Advisory
- http://secunia.com/advisories/39279Vendor Advisory
- http://www.realnetworks.com/uploadedFiles/Support/helix-support/SecurityUpdate041410HS.pdf
- http://www.securityfocus.com/bid/39490
- http://www.vupen.com/english/advisories/2010/0889Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.