Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 up to and including 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nullsoft winamp 5.541 |
||
nullsoft winamp 5.51 |
||
mega-nerd libsndfile 1.0.17 |
||
mega-nerd libsndfile 1.0.16 |
||
nullsoft winamp 5.552 |
||
mega-nerd libsndfile 1.0.15 |
||
nullsoft winamp 5.55 |
||
nullsoft winamp 5.54 |
||
mega-nerd libsndfile 1.0.19 |
||
mega-nerd libsndfile 1.0.18 |
||
nullsoft winamp 5.52 |
||
nullsoft winamp 5.5 |