Vulnerabilities > Nullsoft > Winamp > 5.55

DATE CVE VULNERABILITY TITLE RISK
2009-05-26 CVE-2009-1788 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value.
network
mega-nerd nullsoft CWE-119
critical
9.3
2009-03-05 CVE-2009-0186 Numeric Errors vulnerability in multiple products
Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.
network
nullsoft mega-nerd CWE-189
critical
9.3
2009-01-23 CVE-2009-0263 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Nullsoft Winamp
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.
network
low complexity
nullsoft CWE-119
critical
10.0
2005-07-19 CVE-2005-2310 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Nullsoft Winamp
Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file with a long ID3v2 tag such as (1) ARTIST or (2) TITLE.
network
nullsoft CWE-119
critical
9.3