RealPlayer/RealOne "DUNZIP32.dll" Buffer Overflow Vulnerability

27-10-2004, 16.26.30
eEye Digital Security has reported a vulnerability in RealPlayer and RealOne, which potentially can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error in a 3rd-party compression library (DUNZIP32.dll) when processing skin files. This can be exploited to cause a buffer overflow via a specially crafted skin file...

