Skip to content

Atrac Sample Decoding Vulnerability

Hello,

Recently I have checked some of mine files and one of them crash VLC. It is interesting since it's the one from the recent RealPlayer security update [1] which was exploitable. I attached repro and seed file for you.

[1] CVE-2012-0928 @ http://service.real.com/realplayer/security/02062012_player/en/

Cheers, Andrzej

PS. I hope I didn't screwed up anything, first time using TRAC.

To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information