PT-2006-4123 · Nullsoft · Winamp

Bassreflex

·

Published

2006-06-26

·

Updated

2017-10-19

·

CVE-2006-3228

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions WinAmp versions 2.90 through 5.23
Description A buffer overflow issue exists, allowing remote attackers to execute arbitrary code via a crafted .mid (MIDI) file. This is due to a problem in the in midi.dll component.
Recommendations For versions 2.90 through 5.23, update to a version that contains a fix for this issue to prevent exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3228

Affected Products

Winamp