7.5
CVSSv2

CVE-2000-0624

Published: 20/07/2000 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Winamp 2.64 and previous versions allows remote malicious users to execute arbitrary commands via a long #EXTINF: extension in the M3U playlist.

Vulnerable Product Search on Vulmon Subscribe to Product

nullsoft winamp

Exploits

source: wwwsecurityfocuscom/bid/1496/info The M3U Playlist file parser in NullSoft Winamp does not perform proper bounds checking with the extension "#EXTINF:" Therefore, entering a string consisting of over 280 characters in conjunction with this parameter will cause a buffer overflow condition which will either crash the application or ...