Skip to main content

Winamp Multiple Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 1 Dec 2010 4819 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Winamp, which could be exploited by attackers to execute arbitrary code.

1. A buffer and integer overflow errors in the "in_midi" module when processing malformed data, which could be exploited by attackers to compromise a vulnerable system.

2. An integer overflow error in the "in_nsv" module when parsing TOC, which could be exploited by attackers to execute arbitrary code.


Impact

  • Remote Code Execution

System / Technologies affected

  • Winamp versions prior to 5.6 Build 3080 (5.6.0.3080)

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to Winamp version 5.6 Build 3080 (5.6.0.3080).


Vulnerability Identifier

  • No CVE information is available

Source


Related Link