Vulnerabilities > CVE-2007-4392 - Denial-Of-Service vulnerability in Nullsoft Winamp 5.35

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
nullsoft

Summary

Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.

Vulnerable Configurations

Part Description Count
Application
Nullsoft
1

Oval

accepted2014-04-07T04:01:57.625-04:00
classvulnerability
contributors
  • nameShane Shaffer
    organizationG2, Inc.
  • nameShane Shaffer
    organizationG2, Inc.
  • nameMaria Mikhno
    organizationALTX-SOFT
definition_extensions
commentWinamp is installed
ovaloval:org.mitre.oval:def:6897
descriptionWinamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
familywindows
idoval:org.mitre.oval:def:15504
statusaccepted
submitted2012-07-20T09:18:28.692-04:00
titleWinamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself
version8