Winamp Multiple Vulnerabilities
Last Update Date:
28 Jun 2011 14:42
Release Date:
28 Jun 2011
6490
Views
RISK: High Risk
TYPE: Clients - Audio & Video
Multiple vulnerabilities have identified in Winamp, which can be exploited by malicious people to potentially compromise a user's system.
- An error in vp6.w5s when parsing media files encoded with the On2 TrueMotion VP6 codec where the "version" field value is greater than 8 can be exploited to corrupt memory via a specially crafted FLV file.
- An error when parsing the "CustomWidth" and "CustomHeight" fields in H263 video content can be exploited to corrupt memory via a specially crafted FLV file.
- An error in nsvdec_vp5.dll when decompressing frames can be exploited to cause a heap-based buffer overflow via a specially crafted NSV file.
- An integer overflow error in nsvdec_vp6.dll when parsing screen dimensions can be exploited to corrupt memory via a specially crafted NSV file.
- An error in nsvdec_vp3.dll in the handling of screen dimensions when decompressing frames can be exploited to cause a heap-based buffer overflow via a specially crafted NSV file.
- An error in in_mod.dll can be exploited to corrupt memory via a specially crafted IT file.
- An error in in_midi.dll when handling "Controller" messages can be exploited to cause a heap-based buffer overflow via a specially crafted MIDI file.
- An error in in_midi.dll when handling "Note On" messages can be exploited to cause a heap-based buffer overflow via a specially crafted file.
- An error in in_midi.dll when parsing MTrk chunks can be exploited to corrupt memory via a specially crafted file.
Impact
- Remote Code Execution
System / Technologies affected
- Winamp 5.x
Solutions
- There is no patch available for this vulnerability currently.
Vulnerability Identifier
- No CVE information is available
Source
Share with