CVE-2008-0065

Nullsoft Winamp 5.21-5.51 - Remote Code Execution via Ultravox Streaming Metadata

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2008-0065. PoCs published by Metasploit, including Metasploit module exploits/windows/browser/winamp_ultravox.

AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in Winamp 5.24 by sending an overly long artist tag in Ultravox streaming metadata, leading to arbitrary code execution. The exploit uses a TCP server to deliver the malicious payload via HTTP.

Description

Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16611

This Metasploit module exploits a stack buffer overflow in Winamp 5.24 by sending an overly long artist tag in Ultravox streaming metadata, leading to arbitrary code execution. The exploit uses a TCP server to deliver the malicious payload via HTTP.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Winamp 5.24
No auth needed
Prerequisites: Network access to the target · Winamp 5.24 with Ultravox streaming enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/winamp_ultravox.rb

This Metasploit module exploits a stack buffer overflow in Winamp 5.24 by sending an overly long artist tag in Ultravox streaming metadata, leading to arbitrary code execution. The exploit uses a TCP server to deliver the malicious payload via HTTP.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Winamp 5.24
No auth needed
Prerequisites: Network access to the target · Winamp 5.24 with vulnerable in_mp3.dll
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27344
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/39778
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0183
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/27865
Various Sources x_refsource_confirm
http://www.winamp.com/player/version-history
Vendor Advisory x_refsource_misc
http://secunia.com/secunia_research/2008-2/advisory/

Scores

EPSS 0.7236
EPSS Percentile 98.8%

Details

CWE
CWE-119
Status published
Products (3)
winamp/nullsoft_winamp 5.5
winamp/nullsoft_winamp 5.21
winamp/nullsoft_winamp 5.51
Published Jan 22, 2008
Tracked Since Feb 18, 2026