20020705 remote winamp 2.x exploit (all current versions)mailing list
http://online.securityfocus.com/archive/1/280786 CVE-2002-2195
Nullsoft Winamp 2.80 - Automatic Update Check Buffer Overflow
Record summary
CVE-2002-2195 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the version update check for Winamp 2.80 and earlier allows remote attackers who can spoof www.winamp.com to execute arbitrary code via a long server response.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNullsoft Winamp 2.80 - Automatic Update Check Buffer OverflowExploitDB exploitby anonymousNot analyzed1 file
References
4winamp-auto-update-bo(9488)vdb entry
http://www.iss.net/security_center/static/9488.php 5170vdb entry
http://www.securityfocus.com/bid/5170 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-2195