EIP-2026-116543

PRE-CVE

Winamp 5.61 - 'in_midi' Component heap Overflow (crash only)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116543. PoCs published by Alexander Gavrun.

AI-analyzed exploit summary This is a detailed technical analysis of a heap overflow vulnerability in Winamp's 'in_midi' component (CVE-2011-139516), focusing on how a crafted MIDI file with a malformed System Exclusive message can trigger a heap overflow due to incorrect size calculations during memcpy operations.

Description

Winamp 5.61 - 'in_midi' Component heap Overflow (crash only)

Exploits (1)

exploitdb WRITEUP VERIFIED
by Alexander Gavrun · doswindows
https://www.exploit-db.com/exploits/17287

This is a detailed technical analysis of a heap overflow vulnerability in Winamp's 'in_midi' component (CVE-2011-139516), focusing on how a crafted MIDI file with a malformed System Exclusive message can trigger a heap overflow due to incorrect size calculations during memcpy operations.

Classification
Writeup 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target: Winamp 5.61
No auth needed
Prerequisites: Victim must open a specially crafted MIDI file in Winamp
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026