This site is deprecated. Please
CLICK HERE for latest updates
Short Name |
HTTP:STC:DL:MAL-AIFF
|
Severity |
Major
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
HTTP
|
Keywords |
Malformed AIFF File
|
Release Date |
2010/10/04
|
Update Number |
1784
|
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+
|
HTTP: Malformed AIFF File
This signature detects attempts to exploit a known vulnerability in the AIFF file format. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the client application.
Extended Description
Winamp is prone to multiple buffer-overflow vulnerabilities because the application fails to perform adequate boundary checks on user-supplied input.
Attackers may leverage these issues to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
Versions up to and including Winamp 5.541 are vulnerable.
Affected Products
- Nullsoft winamp 2.10.0
- Nullsoft winamp 2.24.0
- Nullsoft winamp 2.4.0
- Nullsoft winamp 2.50.0
- Nullsoft winamp 2.5.0 e
- Nullsoft winamp 2.5.0 E
- Nullsoft winamp 2.60.0 (full)
- Nullsoft winamp 2.60.0 (lite)
- Nullsoft winamp 2.6.0 4
- Nullsoft winamp 2.61.0 (full)
- Nullsoft winamp 2.62.0 (standard)
- Nullsoft winamp 2.64.0 (standard)
- Nullsoft winamp 2.65.0
- Nullsoft winamp 2.70.0
- Nullsoft winamp 2.70.0 (full)
- Nullsoft winamp 2.71.0
- Nullsoft winamp 2.72.0
- Nullsoft winamp 2.73.0
- Nullsoft winamp 2.73.0 (full)
- Nullsoft winamp 2.74.0
- Nullsoft winamp 2.75.0
- Nullsoft winamp 2.76.0
- Nullsoft winamp 2.77.0
- Nullsoft winamp 2.78.0
- Nullsoft winamp 2.79.0
- Nullsoft winamp 2.80.0
- Nullsoft winamp 2.81.0
- Nullsoft winamp 2.91.0
- Nullsoft winamp 3.0.0
- Nullsoft winamp 3.1.0
- Nullsoft winamp 5.0.0 1
- Nullsoft winamp 5.0.0 2
- Nullsoft winamp 5.0.0 3
- Nullsoft winamp 5.0.0 3A
- Nullsoft winamp 5.0.0 4
- Nullsoft winamp 5.0.0 5
- Nullsoft winamp 5.0.0 6
- Nullsoft winamp 5.0.0 7
- Nullsoft winamp 5.0.0 8
- Nullsoft winamp 5.0.0 8C
- Nullsoft winamp 5.0.0 9
- Nullsoft winamp 5.0.0 91
- Nullsoft winamp 5.094
- Nullsoft winamp 5.11
- Nullsoft winamp 5.12
- Nullsoft winamp 5.13
- Nullsoft winamp 5.2
- Nullsoft winamp 5.21
- Nullsoft winamp 5.22
- Nullsoft winamp 5.24
- Nullsoft winamp 5.3
- Nullsoft winamp 5.31
- Nullsoft winamp 5.3.2
- Nullsoft winamp 5.33
- Nullsoft winamp 5.34
- Nullsoft winamp 5.34A
- Nullsoft winamp 5.35
- Nullsoft winamp 5.5
- Nullsoft winamp 5.51
- Nullsoft winamp 5.52
- Nullsoft winamp 5.54
- Nullsoft winamp 5.541
References