Overview
Winamp contains a buffer overflow vulnerability when processing a playlist that has a long file parameter. This may allow a remote unauthenticated attacker to execute arbitrary code on a vulnerable system.
Description
Winamp Winamp is a media player for Microsoft Windows systems. It can play various types of media files, such as MP3s. Winamp was created by Nullsoft, which has been acquired by America Online. |
Impact
A remote unauthenticated attacker may be able to execute arbitrary code by convincing a user to open a specially crafted playlist. This can be achieved by creating a specially crafted web page or other HTML document that may launch Winamp without any user interaction. |
Solution
Install an update |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://milw0rm.com/id.php?id=1458
- http://www.winamp.com/player/version_history.php
- http://www.idefense.com/intelligence/vulnerabilities/display.php?id=377
- http://secunia.com/advisories/18649
- http://www.securityfocus.com/bid/16410
- http://www.osvdb.org/displayvuln.php?osvdb_id=22789
- http://xforce.iss.net/xforce/xfdb/24361
- http://www.auscert.org.au/5984
- http://www.idefense.com/intelligence/vulnerabilities/display.php?id=377
Acknowledgements
This vulnerability was publicly disclosed by ATmaCA.
This document was written by Will Dormann.
Other Information
CVE IDs: | CVE-2006-0476 |
Severity Metric: | 58.91 |
Date Public: | 2006-01-29 |
Date First Published: | 2006-01-31 |
Date Last Updated: | 2006-02-23 18:17 UTC |
Document Revision: | 22 |