Winamp Player FLV Data Processing Integer Overflow Vulnerabilities
Last Update Date:
28 Jan 2011
Release Date:
14 Jul 2010
5384
Views
RISK: Medium Risk
Multiple vulnerabilitieshave been identified in Winamp, which could be exploited by attackers to compromise a vulnerable system. These issues are caused by integer and buffer overflow errors within the "vp6.w5s" component when parsing malformed Flash Video data, which could allow attackers to execute arbitrary code by tricking a user into opening a specially crafted FLV file.
Impact
- Remote Code Execution
System / Technologies affected
- Winamp version 5.572 and prior
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to Winamp version 5.58.
- http://www.winamp.com/media-player/all
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with