Brandon Posted January 31, 2006 Report Share Posted January 31, 2006 Description:ATmaCA has discovered a vulnerability in Winamp, which can be exploited by malicious people to compromise a user's system.The vulnerability is caused due to a boundary error during the handling of filenames including a computer name. This can be exploited to cause a buffer overflow via a specially crafted playlist containing a filename starting with an overly long computer name (about 1040 bytes).Successful exploitation allows execution of arbitrary code on a user's system when e.g. a malicious website is visited.The vulnerability has been confirmed in version 5.12. Other versions may also be affected.Solution:Download the new version:http://www.winamp.com/player/ Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.