• Downloads
  • Threats
    • Adware
    • Browser Hijacking
    • Phishing
    • Ransomware
  • Questions and Answers
  • Recover Encrypted Files
  • Free Malware Removal Tools

MyAntiSpyware

Menu
  • Downloads
  • Threats
    • Adware
    • Browser Hijacking
    • Phishing
    • Ransomware
  • Questions and Answers
  • Recover Encrypted Files
  • Free Malware Removal Tools

Winamp Remote Code Execution

Myantispyware team January 30, 2006    

The vulnerability is caused due to a boundary error during the handling of filenames including a computer name. This can be exploited to cause a buffer overflow via a specially crafted playlist containing a filename starting with an overly long computer name (about 1040 bytes).

Successful exploitation allows execution of arbitrary code on a user’s system when e.g. a malicious website is visited.

The vulnerability has been confirmed in version 5.12. Other versions may also be affected.

NOTE
: An exploit is publicly available.

Don`t use now winamp, use another product.

Exploits & Vulnerabilities

 Previous Post

Free Program – BHODemon

Next Post 

ActiveX Blocklist Release 2006-01-30

Author: Myantispyware team

Myantispyware is an information security website created in 2004. Our content is written in collaboration with Cyber Security specialists, IT experts, under the direction of Patrik Holder and Valeri Tchmych, founders of Myantispyware.com.

Leave a Reply Cancel reply

New Guides

Lean Drops Reviews, Fake Oprah Pink Salt Trick Scam
Euvelle Smart Glasses Review: Scam or Legit? What You Need to Know
scam alert
Ironforgemaster.top Virus Removal Guide
scam alert
HolexSpin.com Review: Promo Code Scams Exposed
Remove Search-regal.com Redirect: Chrome, Edge, Firefox

Follow Us

Search

Useful Guides

browser redirect virus
How to remove Browser redirect virus [Chrome, Firefox, IE, Edge]
remove chrome extension
How to remove Chrome extensions installed by enterprise policy
How to remove browser hijacker virus (Chrome, Firefox, IE, Edge)
DNSChanger
How to remove DNSChanger malware virus [Updated Apr. 2018]
Iphone Calendar virus spam
Iphone Calendar Virus/Spam 2022 (Removal guide)

Recent Guides

Free Program – BHODemon
Pushing Spyware through Search
kbhook.dll – keylogger ?
Microsoft Internet Explorer does not honor ActiveX kill bit
Netscape 8.1 adds spyware scanner, bundles

Myantispyware.com

Myantispyware has been a trusted source for computer security and technology advice since 2004. Our mission is to provide reliable tech guidance and expert, practical solutions to help you stay safe online and protect your digital life.

Social Links

Pages

About Us
Contact Us
Privacy Policy

Copyright © 2004 - 2024 MASW - Myantispyware.com.