AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-4248

HIGH · CVSS 9.3 EPSS 6.83%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-01-25 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 9.3. It affects Linux. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2009-4248
Severity
HIGH
CVSS
9.3
EPSS
6.83%
Linux

Original NVD Description

Buffer overflow in the RTSPProtocol::HandleSetParameterRequest function in client/core/rtspprotocol.cpp in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted RTSP SET_PARAMETER request.