Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
BID:20744
Info
Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
| Bugtraq ID: | 20744 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 25 2006 12:00AM |
| Updated: | Oct 26 2006 08:08PM |
| Credit: | These issues were discovered by an anonymous source. |
| Vulnerable: |
NullSoft Winamp 5.3 NullSoft Winamp 5.24 |
| Not Vulnerable: |
NullSoft Winamp 5.31 |
Discussion
Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
Winamp is prone to multiple Ultravox-related remote heap-based buffer-overflow vulnerabilities because the application fails to properly bounds-check user-supplied input before copying it into an insufficiently sized memory buffer.
Successfully exploiting these issues allows remote attackers to execute arbitrary machine code in the context of the vulnerable application. This will facilitate the remote compromise of affected computers.
To exploit these issues, attackers would have to coerce unsuspecting users to connect to a malicious server with the vulnerable application. This may be accomplished by having users follow a malicious URI or by embedding malicious data in a playlist file.
Winamp is prone to multiple Ultravox-related remote heap-based buffer-overflow vulnerabilities because the application fails to properly bounds-check user-supplied input before copying it into an insufficiently sized memory buffer.
Successfully exploiting these issues allows remote attackers to execute arbitrary machine code in the context of the vulnerable application. This will facilitate the remote compromise of affected computers.
To exploit these issues, attackers would have to coerce unsuspecting users to connect to a malicious server with the vulnerable application. This may be accomplished by having users follow a malicious URI or by embedding malicious data in a playlist file.
Exploit / POC
Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
Currently we are not aware of any exploits for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
Solution:
The vendor has released version 5.31 of Winamp to address these issues.
NullSoft Winamp 5.24
NullSoft Winamp 5.3
Solution:
The vendor has released version 5.31 of Winamp to address these issues.
NullSoft Winamp 5.24
-
NullSoft Winamp 5.31
http://www.winamp.com/player/index.php
NullSoft Winamp 5.3
-
NullSoft Winamp 5.31
http://www.winamp.com/player/index.php
References
Nullsoft Winamp Ultravox Multiple Remote Heap Overflow Vulnerabilities
References:
References:
- Winamp Home Page (NullSoft)
- Winamp Version History (Nullsoft)
- iDefense Security Advisory 10.25.06: AOL Nullsoft Winamp Ultravox 'ultravox-max- (iDefense Labs
) - iDefense Security Advisory 10.25.06: AOL Nullsoft Winamp Ultravox Lyrics3 v2.00 (iDefense Labs
)