Heap-based buffer overflow in RealNetworks Helix DNA Server 10.0 and 11.0 allows remote attackers to execute arbitrary code via (1) a long User-Agent HTTP header in the RTSP service and (2) unspecified vectors involving the "parsing of HTTP URL schemes". Upgrade to Helix DNA Server version 11.1 :
https://helix-server.helixcommunity.org/2005/devdocs/builds
Publication date: Thu, 29 Jun 2006 03:05:00 +0000