1. Home
  2. Computing & Technology
  3. Web Browsers
photo of Scott Orgera
Scott's Web Browsers Blog

By Scott Orgera, About.com Guide to Web Browsers

RealPlayer Vulnerability Makes IE Unsafe

Wednesday March 12, 2008

Security researcher Elazar Broad revealed a rather troubling flaw earlier this week that affects users of RealPlayer and the Internet Explorer browser. The file rmoc3260.dll, a module used by RealPlayer's ActiveX control, is to blame for the vulnerability. Broad posted proof-of-concept code, unveiling the possibility that an attacker could modify heap blocks after they are freed and overwrite certain registers. This in turn could lead to remote code execution on a victim's PC. He suggests setting the killbit within IE for the ActiveX control until a fix is released. Another alternative would be to switch to a different browser in the meantime, such as Firefox or Opera.

(Photo © Yakobchuk - #766785/stockxpert)

Comments

No comments yet. Leave a Comment

Leave a Comment

Line and paragraph breaks are automatic. Some HTML allowed: <a href="" title="">, <b>, <i>, <strike>

Explore Web Browsers
About.com Special Features

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

Easy ways to connect two computers for networking purposes. More >

  1. Home
  2. Computing & Technology
  3. Web Browsers

©2009 About.com, a part of The New York Times Company.

All rights reserved.