7 results (0.002 seconds)

CVSS: 7.3EPSS: 0%CPEs: 1EXPL: 0

05 Jul 2017 — Winamp 5.666 Build 3516(x86) allows attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Data from Faulting Address controls Code Flow starting at in_flv!winampGetInModule2+0x00000000000009a8." Winamp versión 5.666 Build 3516 (en x86), permite a los atacantes ejecutar código arbitrario o causar una denegación de servicio por medio de un archivo .flv creado, relacionado a "Data from Faulting Address controls Code Flow starting at in_flv!winampGetInModule2+0x00... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-10725 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

05 Jul 2017 — Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Data from Faulting Address may be used as a return value starting at f263!GetWinamp5SystemComponent+0x0000000000001951." Winamp versión 5.666 Build 3516 (en x86), podría permitir a los atacantes ejecutar código arbitrario o causar una denegación de servicio por medio de un archivo .flv creado, relacionado a ""Data from Faulting Address may be used as a return value s... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-10726 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

05 Jul 2017 — Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Data from Faulting Address controls Branch Selection starting at in_mp3!DeleteAudioDecoder+0x000000000000762f." Winamp versión 5.666 Build 3516 (en x86), podría permitir a los atacantes ejecutar código arbitrario o causar una denegación de servicio por medio de un archivo .flv creado, relacionado a "Data from Faulting Address controls Branch Selection starting at in_... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-10727 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

05 Jul 2017 — Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Error Code (0xe06d7363) starting at wow64!Wow64NotifyDebugger+0x000000000000001d." Winamp versión 5.666 Build 3516 (en x86), podría permitir a los atacantes ejecutar código arbitrario o causar una denegación de servicio por medio de un archivo .flv creado, relacionado a el "Error Code (0xe06d7363) starting at wow64!Wow64NotifyDebugger+0x000000000000001d." • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-10728 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 2%CPEs: 1EXPL: 2

01 Jul 2013 — Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution Winamp versión 5.63: una Desreferencia de Puntero No Válida conlleva a una Ejecución de Código Arbitrario. An invalid pointer dereference vulnerability has been identified in WinAmp version 5.63. The application loads the contents of the %APPDATA%\WinAmp\links.xml on startup (the key lngId="default") and while browsing through the bookmarks in the Browser view of the GUI, but does not properly validate the length of the string load... • https://www.exploit-db.com/exploits/26557 • CWE-763: Release of Invalid Pointer or Reference •

CVSS: 10.0EPSS: 69%CPEs: 3EXPL: 1

22 Jan 2008 — Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles. Múltiples desbordamientos de búfer basado en pila en in_mp3.dll en Winamp 5.21, 5.5, y 5.51 permite a atacantes remotos ejecutar código de su elección a través de etiquetas largas (1) artist o (2) name en Ultravox streaming metadata, relacionado con la construcción de ... • https://www.exploit-db.com/exploits/16611 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 4%CPEs: 1EXPL: 1

17 Dec 2007 — Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in a .mp4 file, with crafted tags, contained in a certain .rar archive, a related issue to CVE-2007-2498. NOTE: for exploitation, the victim must select a certain menu option at the time of the attack. Desbordamiento de buffer basado en pila en Nullsoft Winamp 5.32 permite que atacantes remotos con la intervención del usuario ejecuten código a su elección usando código unic... • https://www.exploit-db.com/exploits/4703 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •