http://secunia.com/advisories/13269/


Description:
Brett Moore has reported a vulnerability in Winamp, which can be exploited by malicious people to compromise a user's system.


The vulnerability is caused due to a boundary error in the "IN_CDDA.dll" file. This can be exploited in various ways to cause a stack-based buffer overflow e.g. by tricking a user into visiting a malicious web site containing a specially crafted ".m3u" playlist.

Successful exploitation allows execution of arbitrary code.

The vulnerability has been reported in version 5.05 and confirmed in version 5.06. Prior versions may also be affected.

--
Cette liste vous est offerte par Emakina <http://www.emakina.com/>
Emakina: technologie et creativite au service de vos projets Web.
Desabonnement par mail : <mailto:[EMAIL PROTECTED]>



Répondre à