If you use RealNetworks' RealPlayer software, you might want to pay close attention to this demo from the folks at Gleg Ltd., a Russian vulnerability research and exploit creation outfit.
According to Gleg founder Evgeny Legerov, <A HREF="http://securitywatch.eweek.com/browsers/russian_firm_demos_realplayer_zeroday_exploit.html?kc=EWKNLEDP010308B">there is a zero-day vulnerability</A> that allows code execution in RealPlayer 11, the most up-to-date version of the cross-platform media player. Legerov said the exploit was tested against RealPlayer 11 build 6.0.14.748.