Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown

CVE-2007-6403

Disclosure Date: December 17, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in a .mp4 file, with crafted tags, contained in a certain .rar archive, a related issue to CVE-2007-2498. NOTE: for exploitation, the victim must select a certain menu option at the time of the attack.
0
Attacker Value
Unknown

CVE-2007-4392

Disclosure Date: August 17, 2007 (last updated October 04, 2023)
Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
0
Attacker Value
Unknown

CVE-2007-2498

Disclosure Date: May 04, 2007 (last updated October 04, 2023)
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2007-2180

Disclosure Date: April 24, 2007 (last updated October 04, 2023)
Buffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.
0
Attacker Value
Unknown

CVE-2007-1922

Disclosure Date: April 10, 2007 (last updated October 04, 2023)
The Impulse Tracker (IT) and ScreamTracker 3 (S3M) modules in IN_MOD.DLL in AOL Nullsoft Winamp 5.33 allows remote attackers to execute arbitrary code via a crafted (1) .IT or (2) .S3M file containing integer values that are used as memory offsets, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-1921

Disclosure Date: April 10, 2007 (last updated October 04, 2023)
LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT file that contains a value that is used as an offset, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2006-5567

Disclosure Date: October 27, 2006 (last updated October 04, 2023)
Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) ultravox-max-msg header to the Ultravox protocol handler or (2) unspecified Lyrics3 tags.
0