Vulnerabilities > Nullsoft > Winamp

DATE CVE VULNERABILITY TITLE RISK
2009-05-26 CVE-2009-1791 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in aiff_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an AIFF file with an invalid header value.
network
mega-nerd nullsoft CWE-119
critical
9.3
2009-05-26 CVE-2009-1788 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value.
network
mega-nerd nullsoft CWE-119
critical
9.3
2009-03-05 CVE-2009-0833 Buffer Errors vulnerability in Myplugins GEN MSN 0.31
Heap-based buffer overflow in gen_msn.dll in the gen_msn plugin 0.31 for Winamp 5.541 allows remote attackers to execute arbitrary code via a playlist (.pls) file with a long URL in the File1 field.
network
myplugins nullsoft CWE-119
critical
9.3
2009-03-05 CVE-2009-0186 Numeric Errors vulnerability in multiple products
Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.
network
nullsoft mega-nerd CWE-189
critical
9.3
2009-01-23 CVE-2009-0263 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Nullsoft Winamp
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.
network
low complexity
nullsoft CWE-119
critical
10.0
2008-08-10 CVE-2008-3567 Cross-Site Scripting vulnerability in Nullsoft Winamp
Cross-zone scripting vulnerability in the NowPlaying functionality in NullSoft Winamp before 5.541 allows remote attackers to conduct cross-site scripting (XSS) attacks via an MP3 file with JavaScript in id3 tags.
network
nullsoft CWE-79
4.3
2008-08-01 CVE-2008-3441 Code Injection vulnerability in Nullsoft Winamp
Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning.
network
low complexity
nullsoft CWE-94
7.5
2007-10-12 CVE-2007-4619 Numeric Errors vulnerability in multiple products
Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and other products, allow user-assisted remote attackers to execute arbitrary code via a malformed FLAC file that triggers improper memory allocation, resulting in a heap-based buffer overflow.
network
flac nullsoft CWE-189
critical
9.3
2007-08-17 CVE-2007-4392 Denial-Of-Service vulnerability in Nullsoft Winamp 5.35
Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
network
nullsoft
4.3
2007-05-04 CVE-2007-2498 Buffer Overflow vulnerability in Winamp MP4 File Parsing
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file.
network
nullsoft
critical
9.3