10
CVSSv2

CVE-2009-0263

Published: 23/01/2009 Updated: 19/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in Winamp 5.541 and previous versions allow remote malicious users to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nullsoft winamp 2.24

nullsoft winamp 2.10

nullsoft winamp 2.62

nullsoft winamp 2.64

nullsoft winamp 5.0

nullsoft winamp 3.1

nullsoft winamp 2.73

nullsoft winamp 2.91

nullsoft winamp 2.75

nullsoft winamp 2.76

nullsoft winamp 5.08d

nullsoft winamp 5.08c

nullsoft winamp 5.08

nullsoft winamp 5.01

nullsoft winamp 5.5

nullsoft winamp 5.51

nullsoft winamp 5.112

nullsoft winamp 5.31

nullsoft winamp 5.52

nullsoft winamp 5.53

nullsoft winamp 2.5e

nullsoft winamp 2.60

nullsoft winamp 2.0

nullsoft winamp 2.61

nullsoft winamp 2.65

nullsoft winamp 2.4

nullsoft winamp 2.70

nullsoft winamp 2.6x

nullsoft winamp 2.79

nullsoft winamp 2.7x

nullsoft winamp 2.95

nullsoft winamp 2.71

nullsoft winamp 2.72

nullsoft winamp 5.05

nullsoft winamp 5.04

nullsoft winamp 5.03a

nullsoft winamp 5.094

nullsoft winamp 5.34

nullsoft winamp 5.2

nullsoft winamp 5.13

nullsoft winamp 5.22

nullsoft winamp 5.21

nullsoft winamp 5.0.1

nullsoft winamp 3.0

nullsoft winamp 2.90

nullsoft winamp 2.77

nullsoft winamp 2.78

nullsoft winamp 5.09

nullsoft winamp 5.08e

nullsoft winamp 5.03

nullsoft winamp 5.02

nullsoft winamp 5.35

nullsoft winamp 5.36

nullsoft winamp 5.1

nullsoft winamp 5.111

nullsoft winamp 5.24

nullsoft winamp 5.23

nullsoft winamp 2.50

nullsoft winamp 2.80

nullsoft winamp 2.81

nullsoft winamp 2.74

nullsoft winamp 5.07

nullsoft winamp 5.06

nullsoft winamp 5.0.2

nullsoft winamp 5.093

nullsoft winamp 5.091

nullsoft winamp 5.12

nullsoft winamp 5.11

nullsoft winamp 5.3

nullsoft winamp 5.33

nullsoft winamp 5.32

nullsoft winamp 5.54

nullsoft winamp

Exploits

################################################################################################################################ #Winamp <= 5541 multiples Denial of Services (MP3/AIFF) # # Winamp MP3 file parsing DoS ==> #!/usr/bin/perl use strict; my $mp3 = "\x49\x44\x33\x00\x00\x00\x00\x00\x09\x07\x54\x49\x54\x32\x00\x00\x00\x08\x00\x00\x0 ...