FYI...
RealPlayer v14.0.0 released-
http://www.securitytracker.com/id?1024861Dec 10 2010
Version: prior to 14.0.0
Description: Multiple vulnerabilities were reported in RealPlayer. A remote user can cause arbitrary code to be executed on the target user's system.
A remote user can create specially crafted content that, when loaded by the target user, will execute arbitrary code on the target system. The code will run with the privileges of the target user. RealPlayer Enterprise is also affected...
CVE Reference: CVE-2010-0121, CVE-2010-0125, CVE-2010-2579, CVE-2010-2997, CVE-2010-2999, CVE-2010-4375, CVE-2010-4376, CVE-2010-4377, CVE-2010-4378, CVE-2010-4379, CVE-2010-4380, CVE-2010-4381, CVE-2010-4382, CVE-2010-4383, CVE-2010-4384, CVE-2010-4385, CVE-2010-4386, CVE-2010-4387, CVE-2010-4388, CVE-2010-4389, CVE-2010-4390, CVE-2010-4391, CVE-2010-4392, CVE-2010-4394, CVE-2010-4395, CVE-2010-4396, CVE-2010-4397
-
http://service.real.com/realplayer/security/12102010_player/en/December 10, 2010
-
http://www.h-online.com/security/news/item/Overdue-patches-published-for-RealPlayer-1151696.html12 December 2010, 22:39 - "... Those who still use a vulnerable RealPlayer
should install the update immediately – or take the opportunity to uninstall the program if it is no longer in use.
If left unpatched, it is a serious security risk."
