Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown
CVE-2007-6403
Disclosure Date: December 17, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in a .mp4 file, with crafted tags, contained in a certain .rar archive, a related issue to CVE-2007-2498. NOTE: for exploitation, the victim must select a certain menu option at the time of the attack.
0
Attacker Value
Unknown
CVE-2007-4392
Disclosure Date: August 17, 2007 (last updated October 04, 2023)
Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
0
Attacker Value
Unknown
CVE-2007-2498
Disclosure Date: May 04, 2007 (last updated October 04, 2023)
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2007-2180
Disclosure Date: April 24, 2007 (last updated October 04, 2023)
Buffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.
0
Attacker Value
Unknown
CVE-2007-1922
Disclosure Date: April 10, 2007 (last updated October 04, 2023)
The Impulse Tracker (IT) and ScreamTracker 3 (S3M) modules in IN_MOD.DLL in AOL Nullsoft Winamp 5.33 allows remote attackers to execute arbitrary code via a crafted (1) .IT or (2) .S3M file containing integer values that are used as memory offsets, which triggers memory corruption.
0
Attacker Value
Unknown
CVE-2007-1921
Disclosure Date: April 10, 2007 (last updated October 04, 2023)
LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT file that contains a value that is used as an offset, which triggers memory corruption.
0
Attacker Value
Unknown
CVE-2006-5567
Disclosure Date: October 27, 2006 (last updated October 04, 2023)
Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) ultravox-max-msg header to the Ultravox protocol handler or (2) unspecified Lyrics3 tags.
0