Unrated severityNVD Advisory· Published Jul 20, 2009· Updated Apr 23, 2026
CVE-2009-2533
CVE-2009-2533
Description
rmserver in RealNetworks Helix Server and Helix Mobile Server before 13.0.0 allows remote attackers to cause a denial of service (daemon exit) via multiple RTSP SET_PARAMETER requests with empty DataConvertBuffer headers.
Affected products
4cpe:2.3:a:realnetworks:helix_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:realnetworks:helix_server:*:*:*:*:*:*:*:*range: <=12.0.1
- cpe:2.3:a:realnetworks:helix_server:12.0.0:*:*:*:*:*:*:*
cpe:2.3:a:realnetworks:helix_server_mobile:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:realnetworks:helix_server_mobile:*:*:*:*:*:*:*:*range: <=12.0.0
- cpe:2.3:a:realnetworks:helix_server_mobile:11.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7News mentions
0No linked articles in our index yet.