Vulnerabilities > CVE-2006-5567 - Unspecified vulnerability in Nullsoft Winamp 5.24/5.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) ultravox-max-msg header to the Ultravox protocol handler or (2) unspecified Lyrics3 tags.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | Nullsoft Winamp. CVE-2006-5567. Dos exploit for windows platform |
id | EDB-ID:2708 |
last seen | 2016-01-31 |
modified | 2006-11-03 |
published | 2006-11-03 |
reporter | cocoruder |
source | https://www.exploit-db.com/download/2708/ |
title | Nullsoft Winamp <= 5.3 - Ultravox-Max-Msg Heap Overflow DoS PoC |
Nessus
NASL family | Windows |
NASL id | WINAMP_531.NASL |
description | The remote host is using Winamp, a popular media player for Windows. The version of Winamp installed on the remote Windows host reportedly contains two overflow flaws, one involving the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 22921 |
published | 2006-10-26 |
reporter | This script is Copyright (C) 2006-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/22921 |
title | Winamp < 5.31 Multiple Buffer Overflows |
code |
|
Oval
accepted | 2014-04-07T04:01:59.221-04:00 | ||||||||||||
class | vulnerability | ||||||||||||
contributors |
| ||||||||||||
definition_extensions |
| ||||||||||||
description | Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) ultravox-max-msg header to the Ultravox protocol handler or (2) unspecified Lyrics3 tags. | ||||||||||||
family | windows | ||||||||||||
id | oval:org.mitre.oval:def:15686 | ||||||||||||
status | accepted | ||||||||||||
submitted | 2012-07-20T09:18:28.692-04:00 | ||||||||||||
title | Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 | ||||||||||||
version | 8 |
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=431
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=431
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=432
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=432
- http://secunia.com/advisories/22580
- http://secunia.com/advisories/22580
- http://securitytracker.com/id?1017119
- http://securitytracker.com/id?1017119
- http://securitytracker.com/id?1017120
- http://securitytracker.com/id?1017120
- http://www.kb.cert.org/vuls/id/449092
- http://www.kb.cert.org/vuls/id/449092
- http://www.securityfocus.com/bid/20744
- http://www.securityfocus.com/bid/20744
- http://www.vupen.com/english/advisories/2006/4196
- http://www.vupen.com/english/advisories/2006/4196
- http://www.winamp.com/player/version_history.php#5.31
- http://www.winamp.com/player/version_history.php#5.31
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29804
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29804
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29807
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29807
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15686
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15686