CVE-2006-3228 – Winamp 5.21 - '.Midi' File Header Handling Buffer Overflow (PoC)
https://notcve.org/view.php?id=CVE-2006-3228
Buffer overflow in in_midi.dll for WinAmp 2.90 up to 5.23, including 5.21, allows remote attackers to execute arbitrary code via a crafted .mid (MIDI) file. Desbordamiento de búfer en in_midi.dll para WinAmp v2.90 hasta v5.23, incluyendo v5.21, permite a atacantes remotos ejecutar código de su elección a través de un fichero manipulado .mi (MIDI). • https://www.exploit-db.com/exploits/1935 http://forums.winamp.com/showthread.php?threadid=248100 http://secunia.com/advisories/20722 http://www.attrition.org/pipermail/vim/2006-June/000892.html http://www.attrition.org/pipermail/vim/2006-June/000893.html http://www.winamp.com/about/article.php?aid=10694 •
CVE-2006-3007
https://notcve.org/view.php?id=CVE-2006-3007
Multiple cross-site scripting (XSS) vulnerabilities in SHOUTcast 1.9.5 allow remote attackers to inject arbitrary HTML or web script via the DJ fields (1) Description, (2) URL, (3) Genre, (4) AIM, and (5) ICQ. Múltiples vulnerabilidades de XSS en SHOUTcast 1.9.5 permiten a atacantes remotos inyectar secuencias de comandos web o HTML arbitrarios a través de los campos DJ (1) Description, (2) URL, (3) Genre, (4) AIM y (5) ICQ. • http://marc.info/?l=bugtraq&m=114980135615062&w=2 http://secunia.com/advisories/20524 http://secunia.com/advisories/21005 http://www.gentoo.org/security/en/glsa/glsa-200607-05.xml http://www.securityfocus.com/bid/18376 http://www.vupen.com/english/advisories/2006/2254 https://exchange.xforce.ibmcloud.com/vulnerabilities/27129 •
CVE-2006-0720 – Winamp 5.12 - '.m3u' Local Stack Buffer Overflow
https://notcve.org/view.php?id=CVE-2006-0720
Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted .m3u file that causes an incorrect strncpy function call when the player pauses or stops the file. • https://www.exploit-db.com/exploits/26245 http://forums.winamp.com/showthread.php?threadid=238648 http://securityreason.com/securityalert/476 http://securitytracker.com/id?1015675 http://www.nsfocus.com/english/homepage/research/0601.htm http://www.securityfocus.com/archive/1/425888/100/0/threaded http://www.securityfocus.com/bid/16785 https://exchange.xforce.ibmcloud.com/vulnerabilities/24740 •
CVE-2006-0708
https://notcve.org/view.php?id=CVE-2006-0708
Multiple buffer overflows in NullSoft Winamp 5.13 and earlier allow remote attackers to execute arbitrary code via (1) an m3u file containing a long URL ending in .wma, (2) a pls file containing a File1 field with a long URL ending in .wma, or (3) an m3u file with a long filename, variants of CVE-2005-3188 and CVE-2006-0476. • http://forums.winamp.com/showthread.php?s=&threadid=238648 http://securityreason.com/securityalert/444 http://securityreason.com/securityalert/492 http://securitytracker.com/id?1015621 http://www.securityfocus.com/archive/1/424903/100/0/threaded http://www.securityfocus.com/bid/16623 http://www.vupen.com/english/advisories/2006/0613 https://exchange.xforce.ibmcloud.com/vulnerabilities/24739 https://exchange.xforce.ibmcloud.com/vulnerabilities/24740 https://exchange.xforce.ibmcloud.com/vulnerabilities •
CVE-2006-0476 – Winamp - Playlist UNC Path Computer Name Overflow
https://notcve.org/view.php?id=CVE-2006-0476
Buffer overflow in Nullsoft Winamp 5.12 allows remote attackers to execute arbitrary code via a playlist (pls) file with a long file name (File1 field). • https://www.exploit-db.com/exploits/16531 https://www.exploit-db.com/exploits/1458 https://www.exploit-db.com/exploits/3422 https://www.exploit-db.com/exploits/1460 http://secunia.com/advisories/18649 http://securityreason.com/securityalert/386 http://securityreason.com/securityalert/398 http://securitytracker.com/id?1015552 http://www.heise.de/newsticker/meldung/68981 http://www.kb.cert.org/vuls/id/604745 http://www.osvdb.org/22789 http://www.securityfocus.com/arc •