Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Monica Sojeong Hong

Pesquisador devrt-sourcefire
#27404de 53,639
9.3CVSS total
Vulnerabilidades · 1
PT-2009-4296
9.3
2009-05-29
Nullsoft · Winamp · CVE-2009-1831
Name of the Vulnerable Software and Affected Versions: Nullsoft Winamp versions prior to 5.552 Description: The issue allows remote attackers to execute arbitrary code via a crafted MAKI file. This is due to an incorrect sign extension, an integer overflow, and a stack-based buffer overflow in the Nullsoft Modern Skins Support module (gen ff.dll). Recommendations: For versions prior to 5.552, update to version 5.552 or later to resolve the issue. As a temporary workaround, consider avoiding the use of crafted MAKI files until the update is applied.