Unrated severityNVD Advisory· Published Dec 19, 2002· Updated Apr 16, 2026
CVE-2002-1643
CVE-2002-1643
Description
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbitrary code via (1) a long Transport field in a SETUP RTSP request, (2) a DESCRIBE RTSP request with a long URL argument, or (3) two simultaneous HTTP GET requests with long arguments.
Affected products
2cpe:2.3:a:realnetworks:helix_universal_server:9.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:realnetworks:helix_universal_server:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:realnetworks:helix_universal_server:9.0.2.768:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- www.kb.cert.org/vuls/id/974689nvdPatchThird Party AdvisoryUS Government Resource
- www.securityfocus.com/bid/6456nvdPatch
- www.securityfocus.com/bid/6458nvdPatch
- www.service.real.com/help/faq/security/bufferoverrun12192002.htmlnvdPatch
- www.securityfocus.com/bid/6454nvdExploitPatch
- www.nextgenss.com/advisories/realhelix.txtnvdVendor Advisory
- www.securityfocus.com/archive/1/304203nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/10915nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/10916nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/10917nvd
News mentions
0No linked articles in our index yet.