Vulnerabilities > CVE-2007-2180 - Denial of Service vulnerability in Nullsoft Winamp 5.3

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
nullsoft
exploit available

Summary

Buffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.

Vulnerable Configurations

Part Description Count
Application
Nullsoft
1

Exploit-Db

descriptionWinamp. CVE-2007-2180. Dos exploit for windows platform
fileexploits/windows/dos/3768.pl
idEDB-ID:3768
last seen2016-01-31
modified2007-04-19
platformwindows
port
published2007-04-19
reporterWiLdBoY
sourcehttps://www.exploit-db.com/download/3768/
titleWinamp <= 5.3 - WMV File Remote Denial of Service Exploit
typedos

Oval

accepted2014-04-07T04:01:59.318-04:00
classvulnerability
contributors
  • nameShane Shaffer
    organizationG2, Inc.
  • nameShane Shaffer
    organizationG2, Inc.
  • nameMaria Mikhno
    organizationALTX-SOFT
definition_extensions
commentWinamp is installed
ovaloval:org.mitre.oval:def:6897
descriptionBuffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.
familywindows
idoval:org.mitre.oval:def:15697
statusaccepted
submitted2012-07-20T09:18:28.692-04:00
titleBuffer overflow in Nullsoft Winamp 5.3
version8