Arbitrary Code Execution Vulnerability in Nullsoft Winamp Player

A heap overflow condition in Nullsoft's Winamp Player versions 2.91 to 5.02 could cause execution of arbitrary code on the vulnerable system.

Ken Pfeil

April 6, 2004

1 Min Read
ITPro Today logo in a gray background | ITPro Today

Reported April 5, 2004, by NGSSoftware.

 

 

VERSIONS AFFECTED

 

·        Nullsoft Winamp 2.91 to 5.02

 

DESCRIPTION

 

A heap overflow condition in Nullsoft's Winamp Player versions 2.91 to 5.02 could cause execution of arbitrary code on the vulnerable system. The vulnerability results from a lack of boundary checking by the Winamp media plug-in in_mod.dll within the code that loads Fasttracker 2 (.xm) MOD media files. The discoverer's research team has proved that code execution is possible and that an attacker can activate a malicious media file remotely simply by rendering a specially crafted HTML document.

 

VENDOR RESPONSE

 

The vendor,Nullsoft has releasedWinamp 5.03, which is not vulnerable.

 

CREDIT

 

Discovered byNGSSoftware.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like