AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-4257

HIGH · CVSS 9.3 EPSS 8.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-01-25 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 9.3. It affects Linux. It may be remotely exploitable.

CVE
CVE-2009-4257
Severity
HIGH
CVSS
9.3
EPSS
8.52%
Linux

Original NVD Description

Heap-based buffer overflow in datatype/smil/common/smlpkt.cpp in smlrender.dll in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10 and 11.0.0, and Helix Player 10.x and 11.0.0 allows remote attackers to execute arbitrary code via an SMIL file with crafted string lengths.