<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns="http://purl.org/rss/1.0/" xmlns:admin="http://webns.net/mvcb/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:syn="http://purl.org/rss/1.0/modules/syndication/" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/"><channel rdf:about="http://nvd.nist.gov/download/nvd-rss-analyzed.xml"><title>National Vulnerability Database</title><link>http://web.nvd.nist.gov/view/vuln/search</link><description>This feed contains the most recent fully analyzed CVE cyber vulnerabilities published within the National Vulnerability Database.</description><dc:language xmlns:dc="http://purl.org/dc/elements/1.1/">en-us</dc:language><dc:rights xmlns:dc="http://purl.org/dc/elements/1.1/">This material is not copywritten and may be freely used, however, attribution is requested.</dc:rights><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-12T11:33:59-05:00</dc:date><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">nvd@nist.gov</dc:creator><items><rdf:Seq xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3972" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3971" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3970" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3969" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3968" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3967" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3966" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3965" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3964" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3963" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3962" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3961" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3960" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3959" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3958" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3957" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3956" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3955" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3954" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3953" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1035" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-5078" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1033" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0839" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0928" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0927" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0926" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0925" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0924" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0923" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0922" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/><rdf:li rdf:resource="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1034" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"/></rdf:Seq></items></channel><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3972"><title>CVE-2011-3972 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3972</link><description>The shader translator implementation in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3971"><title>CVE-2011-3971 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3971</link><description>Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to mousemove events.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3970"><title>CVE-2011-3970 (chrome, libxslt)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3970</link><description>libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3969"><title>CVE-2011-3969 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3969</link><description>Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to layout of SVG documents.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3968"><title>CVE-2011-3968 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3968</link><description>Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving Cascading Style Sheets (CSS) token sequences.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3967"><title>CVE-2011-3967 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3967</link><description>Unspecified vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service (application crash) via a crafted certificate.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3966"><title>CVE-2011-3966 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3966</link><description>Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to error handling for Cascading Style Sheets (CSS) token-sequence data.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3965"><title>CVE-2011-3965 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3965</link><description>Google Chrome before 17.0.963.46 does not properly check signatures, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3964"><title>CVE-2011-3964 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3964</link><description>Google Chrome before 17.0.963.46 does not properly implement the drag-and-drop feature, which makes it easier for remote attackers to spoof the URL bar via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3963"><title>CVE-2011-3963 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3963</link><description>Google Chrome before 17.0.963.46 does not properly handle PDF FAX images, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3962"><title>CVE-2011-3962 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3962</link><description>Google Chrome before 17.0.963.46 does not properly perform path clipping, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3961"><title>CVE-2011-3961 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3961</link><description>Race condition in Google Chrome before 17.0.963.46 allows remote attackers to execute arbitrary code via vectors that trigger a crash of a utility process.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3960"><title>CVE-2011-3960 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3960</link><description>Google Chrome before 17.0.963.46 does not properly decode audio data, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3959"><title>CVE-2011-3959 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3959</link><description>Buffer overflow in the locale implementation in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3958"><title>CVE-2011-3958 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3958</link><description>Google Chrome before 17.0.963.46 does not properly perform casts of variables during handling of a column span, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3957"><title>CVE-2011-3957 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3957</link><description>Use-after-free vulnerability in the garbage-collection functionality in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving PDF documents.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3956"><title>CVE-2011-3956 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3956</link><description>The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3955"><title>CVE-2011-3955 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3955</link><description>Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors that trigger the aborting of an IndexedDB transaction.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3954"><title>CVE-2011-3954 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3954</link><description>Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service (application crash) via vectors that trigger a large amount of database usage.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3953"><title>CVE-2011-3953 (chrome)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3953</link><description>Google Chrome before 17.0.963.46 does not prevent monitoring of the clipboard after a paste event, which has unspecified impact and remote attack vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1035"><title>CVE-2012-1035 (ada_web_services)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1035</link><description>AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-5078"><title>CVE-2011-5078 (m-business_anywhere)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-5078</link><description>The web administration interface in the server in Sybase M-Business Anywhere 6.7 before ESD# 3 and 7.0 before ESD# 7 does not require admin authentication for unspecified scripts, which allows remote authenticated users to list or delete user accounts, modify passwords, or read log files via HTTP requests, aka Bug IDs 678497 and 678499.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1033"><title>CVE-2012-1033 (bind)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1033</link><description>The resolver in ISC BIND 9 through 9.8.1-P1 does not properly implement a cache update policy, which allows remote attackers to trigger continued resolvability of domain names that are no longer registered via an unspecified &quot;Ghost Names exploit.&quot;</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0839"><title>CVE-2012-0839 (ocaml)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0839</link><description>OCaml 3.12.1 and earlier computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0928"><title>CVE-2012-0928 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0928</link><description>The ATRAC codec in RealNetworks RealPlayer 11.x and 14.x through 14.0.7, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer 12.x before 12.0.0.1703 does not properly decode samples, which allows remote attackers to execute arbitrary code via a crafted ATRAC audio file.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0927"><title>CVE-2012-0927 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0927</link><description>Unspecified vulnerability in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via vectors involving the coded_frame_size value in a RealAudio audio stream.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0926"><title>CVE-2012-0926 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0926</link><description>The RV10 codec in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, does not properly handle height and width values, which allows remote attackers to execute arbitrary code via a crafted RV10 RealVideo video stream.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0925"><title>CVE-2012-0925 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0925</link><description>Unspecified vulnerability in the RV40 codec in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via a crafted RV40 RealVideo video stream.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0924"><title>CVE-2012-0924 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0924</link><description>RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via vectors involving a VIDOBJ_START_CODE code in a header within a video stream.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0923"><title>CVE-2012-0923 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0923</link><description>The RV20 codec in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, does not properly handle the frame size array, which allows remote attackers to execute arbitrary code via a crafted RV20 RealVideo video stream.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0922"><title>CVE-2012-0922 (realplayer, realplayer_sp)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0922</link><description>rvrender.dll in RealNetworks RealPlayer 11.x, 14.x, and 15.x before 15.02.71, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via crafted flags in an RMFF file.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item><item rdf:about="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1034"><title>CVE-2012-1034 (episerver_cms)</title><link>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1034</link><description>Multiple cross-site scripting (XSS) vulnerabilities in the admin interface in EPiServer CMS through 6R2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.</description><dc:date xmlns:dc="http://purl.org/dc/elements/1.1/">2012-02-08</dc:date></item></rdf:RDF>

