百度首页 | 百度空间
 
查看文章
 
Unpatched RealPlayer Vulnerability Being Exploited in the Wild
2008-04-05 23:22

Sometime on April 1, our honeypots began finding exploits for the RealPlayer 'rmoc3260.dll' ActiveX Control Memory Corruption Vulnerability (BID 28157). Sadly, this is not surprising given that a complete exploit was published for this vulnerability around the same time. At the time of this writing, there is no patch for this vulnerability.

So far impacted sites have ranged from forums, to webmail, to news agencies.

Norton Internet Security 2008, Norton AntiVirus 2008, and Norton 360 version 2 customers will see this attack blocked by the existing MSIE RealPlayer rmoc ActiveX BOIPS signature. Some variants of this attack may be blocked as HTTP Internet Explorer Heap Spray Buffer Overflow. Additionally, antivirus signatures are available for Bloodhound.Exploit.182, protecting customers from threats attempting to exploit this vulnerability.

Update: It appears that this vulnerability has been patched within RealPlayer version 11.0.2 (build 6.0.14.802), which is now available for download. It contains version 6.0.10.50 of the rmoc3260.dll file, which we have determined no longer contains the vulnerability. Current RealPlayer users can use the Check for Update utility, which will also install a version of the .dll file that is no longer vulnerable to this exploit.

==============================================================================

又是第三方...今天有人和我说我一直用real我怎么没中毒...我听的完全吐血,本来不想发这的,但是今天不知道有什么莫名冲动,不知道为什么...发泄了吧...靠!


类别:新闻消息 | 添加到搜藏 | 浏览() | 评论 (6)
 
最近读者:
 
网友评论:
1
2008-04-06 00:05
早就不用real了 呵呵

PS:好像是沙发
 
2
2008-04-06 08:35
呵呵
 
3
2008-04-06 15:51
又见漏洞
 
4
2008-04-07 09:13
Hi! 你好!

看了你的博客,感觉不错!

技术超强的朋友哦!

很愿意交你这个朋友!!

因为是感动,我愿意为你专门弄个属于你的网站!

如果愿意,请联系我!QQ:386142285 或 43622470 

不为别的,为你这个朋友!
 
5
2008-04-10 18:22
来正齐空间最好的地方就是能学英文:-)
 
6
2008-04-13 22:06
英语不太好,所以半看半猜
向你学习中
 
发表评论:
姓 名:
网址或邮箱: (选填)
内 容:
验证码:
 

     

©2008 Baidu