PT-2004-2794 · Nullsoft · Winamp

Peter Winter-Smith

·

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-1896

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Winamp versions 2.91 through 5.02
Description A heap-based buffer overflow issue exists, allowing remote attackers to execute arbitrary code via a Fasttracker 2 (.xm) mod media file.
Recommendations For versions 2.91 through 5.02, update to a version that contains a fix for this issue to prevent arbitrary code execution.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1896

Affected Products

Winamp