Secunia
|
|

|
|
|
|
|
|
|
|
|
|
|
|
|
|
Relating to this vendor: RealNetworks |
And, this specific program: RealPlayer 10.x |
| jmorlan | False Positive Real Player Enterprise 6.0.12.1798 flagged as insecure |
|---|---|
|
26th Nov, 2008 21:42 |
|
Ranking: 4 Posts: 12 User Since: 26th Nov, 2008 System Score: N/A Location: US |
Real Player Enterprise 6.0.12.1798 appears to be the most recent release and more secure than the recommended 6.0.12.1675 version. It was released September 2008. See: http://docs.real.com/docs/enterprise/Release_Notes... |
| Mark.Cox | RE: False Positive Real Player Enterprise 6.0.12.1798 flagged as insecure | ||||||||
|
26th Aug, 2009 07:30 | ||||||||
| Score: 0 Posts: 6 User Since: 25th Aug 2009 System Score: N/A Location: N/A |
We have the latest - at 24th August 2009 - version of Real Player Enterprise (6.0.12.1802) and this too is flagged as insecure. So is this a False Positive? Do secunia need a sample of the program? | ||||||||
|
|||||||||
| Slamgeden | RE: False Positive Real Player Enterprise 6.0.12.1798 flagged as insecure | ||||||||
|
26th Aug, 2009 09:11 | ||||||||
| Score: 0 Posts: 181 User Since: 17th Jul 2009 System Score: N/A Location: N/A |
on 26th Aug, 2009 07:30, Mark.Cox wrote: We have the latest - at 24th August 2009 - version of Real Player Enterprise (6.0.12.1802) and this too is flagged as insecure. So is this a False Positive? Do secunia need a sample of the program? Is it detected as "enterprise", or does it get picked up as normal real-player? You could make a software suggestion, then send them an email and inform them of the problem. -- Assorted Fnords. |
||||||||
|
|||||||||
| Mark.Cox | RE: False Positive Real Player Enterprise 6.0.12.1798 flagged as insecure | ||||||||
|
26th Aug, 2009 14:17 | ||||||||
| Score: 0 Posts: 6 User Since: 25th Aug 2009 System Score: N/A Location: N/A |
Hi Thanks for the prompt reply. It gets detected as RealPlayer 10.x (not enterprise) I need to brush up on the escalation route/process for such false- positive detection Mark |
||||||||
|
|||||||||
| Mark.Cox | RE: False Positive Real Player Enterprise 6.0.12.1798 flagged as insecure | ||||||||
|
30th Oct, 2009 07:39 | ||||||||
| Score: 0 Posts: 6 User Since: 25th Aug 2009 System Score: N/A Location: N/A |
I supplied the exe to Secunia and they have updated their rules so that it it get identified correctly as Real Player Enterprise (and currently secure!) Many thanks to those at secunia and particularly to Izak. |
||||||||
|
|||||||||
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |