4.3
CVSSv2

CVE-2014-3442

Published: 23/05/2014 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Winamp 5.666 and previous versions allows remote malicious users to cause a denial of service (memory corruption and crash) via a malformed .FLV file, related to f263.w5s.

Vulnerable Product Search on Vulmon Subscribe to Product

nullsoft winamp 5.0

nullsoft winamp 5.08c

nullsoft winamp 5.08d

nullsoft winamp 5.111

nullsoft winamp 5.112

nullsoft winamp 5.24

nullsoft winamp 5.3

nullsoft winamp 5.51

nullsoft winamp 5.55

nullsoft winamp 5.581

nullsoft winamp 5.59

nullsoft winamp 5.03

nullsoft winamp 5.04

nullsoft winamp 5.091

nullsoft winamp 5.093

nullsoft winamp 5.2

nullsoft winamp 5.21

nullsoft winamp 5.33

nullsoft winamp 5.34

nullsoft winamp 5.35

nullsoft winamp 5.531

nullsoft winamp 5.54

nullsoft winamp 5.56

nullsoft winamp 5.57

nullsoft winamp

nullsoft winamp 5.05

nullsoft winamp 5.06

nullsoft winamp 5.07

nullsoft winamp 5.094

nullsoft winamp 5.11

nullsoft winamp 5.22

nullsoft winamp 5.23

nullsoft winamp 5.36

nullsoft winamp 5.5

nullsoft winamp 5.541

nullsoft winamp 5.572

nullsoft winamp 5.58

nullsoft winamp 5.01

nullsoft winamp 5.02

nullsoft winamp 5.08e

nullsoft winamp 5.09

nullsoft winamp 5.12

nullsoft winamp 5.13

nullsoft winamp 5.31

nullsoft winamp 5.32

nullsoft winamp 5.52

nullsoft winamp 5.53

nullsoft winamp 5.551

nullsoft winamp 5.552

nullsoft winamp 5.63

nullsoft winamp 5.623

nullsoft winamp 5.61

Exploits

source: wwwsecurityfocuscom/bid/67429/info Winamp is prone to a memory-corruption vulnerability An attacker can leverage this issue to crash the affected application, causing a denial-of-service condition Winamp 5666 is vulnerable; other versions may also be affected data ="\x46\x4C\x56\x01\x05\x00\x00\x00\x09\x00\x00\x00\x00\x12\ ...
WinAMP versions 5666 build 3516 and below suffer from a memory corruption vulnerability ...