<?xml version="1.0" encoding="UTF-8" ?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />

<!-- begin pulling JS & CSS files from juniper.net -->
<script type="text/javascript" src="http://www.juniper.net/assets/js/api.js"></script>
<script type="text/javascript" src="http://www.juniper.net/assets/js/jquery/latest.js"></script>
<script type="text/javascript" src="http://www.juniper.net/assets/js/swfobject.js"></script>
<link rel="stylesheet" href="http://www.juniper.net/assets/toolKit09/assets/css/global-vendor-jnpr.css" type="text/css" media="all" charset="utf-8" />
<link rel="stylesheet" href="http://www.juniper.net/assets/css/print.css" type="text/css" media="print" charset="utf-8" />
<!-- end pulling JS & CSS files from juniper.net -->

<!-- begin local css & js -->
<!-- end local css & js -->

<title>Signature Detail - Security Intelligence Center - Juniper Networks</title>

</head>
<body>
<div id="navOpen" class="container">
  <div class="contentWrapper">
    <!-- begin header -->
    <div class="left" id="header">
      <div class="topLogo left"> <a tabindex="1" title="Juniper Networks" href="http://www.juniper.net/us/en/"> <img alt="Juniper Networks" src="http://www.juniper.net/shared/img/header/logo-top-m.gif"/></a> </div>
    </div>
    <!--end header -->
    <!-- begain topnav -->
    <div style="width: 935px;">
      <div class="left" id="navbar">
        <div class="navbarItem" id="menuWidthA"> 
       	  <a href="http://www.juniper.net/us/en/solutions/" style="width:154px;">Solutions</a>        </div>
        <div class="navbarItem" id="menuWidthC"> 
       	  <a href="http://www.juniper.net/us/en/products-services/" style="width:159px;">Products &amp; Services</a>        </div>
        <div class="navbarItem" id="menuWidthA"> 
       	  <a href="http://www.juniper.net/us/en/company/" style="width:154px;">Company</a>        </div>
        <div class="navbarItem" id="menuWidthB"> 
       	  <a href="http://www.juniper.net/us/en/partners/" style="width: 156px;">Partners</a>        </div>
        <div class="navbarItem" id="menuWidthB"> 
       	  <a href="http://www.juniper.net/us/en/support/" style="width: 156px;">Support</a>        </div>
        <div class="navbarItem" id="menuWidthB"> 
       	  <a href="http://www.juniper.net/us/en/training/" style="width: 156px;">Education</a>        </div>
    </div>
    </div>
    <!-- end topnav -->

    <!--begin herospace banner  -->
    <div class="hero" id="hero">
      <div id="heroContentShort">
        <div class="heroContentShort">
         <h1>Signature Detail</h1>
        </div>
      </div>
    </div>
    <!--end herospace banner  -->
    <!--begin left content  -->
    <div class="leftNav" id="leftNav">
     <div class="parent"><a class="leftNavParent" title="Security Intelligence Center" href="http://juniper.net/security/">Security Intelligence Center</a><a class="leftNavParent" title="Security Intelligence Center" href="http://juniper.net/security/"></a></div>
     
     
      <div class="child"> <a title="Signatures" href="http://services.netscreen.com/documentation/signatures/">Signatures</a></div>
      
      <div class="navBorder"> </div>
      
    </div>
    <!-- end of left content  -->
    <div class="sharing">
      <div id="printBtn"> <a title="Print" href="javascript:print()"> <img alt="Print" src="http://www.juniper.net/shared/img/global/btn-print.gif"/> </a> </div>
      <div id="shareBtn">
        <script type="text/javascript">
        addToOnload(drawShare,"favorites, email, digg, delicious"); 
        var addthis_language = "en";
    </script>
      </div>
    </div>
    
    <!-- begin middle column content -->
    <!-- begin tabular -->
    <div id="body" class="body">
      <div class="scmDefault clear">
       
<div style="float:right;">
<table cellspacing="0" cellpadding="2" class="jTable">
 <tbody>
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Short Name</h3></th>
   <td width="128" valign="top">
    HTTP:STC:DL:MAL-MEDIA-BOF
   </td>
  </tr>
  
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Severity</h3></th>
   <td width="128" valign="top">
    High
   </td>
  </tr>
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Recommended</h3></th>
   <td width="128" valign="top">
    No
   </td>
  </tr>
  
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Recommended Action</h3></th>
   <td width="128" valign="top">
    Drop
   </td>
  </tr>
  
  
  
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Category</h3></th>
   <td width="128" valign="top">
    HTTP
   </td>
  </tr>
  
  
  
  
  
  

  
  
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Keywords</h3></th>
   <td width="128" valign="top">
    Malformed Media File Processing Buffer Overflow
   </td>
  </tr>
  
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Release Date</h3></th>
   <td width="128" valign="top">
    2012/11/11
   </td>
  </tr>
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Update Number</h3></th>
   <td width="128" valign="top">
    2202
   </td>
  </tr>
  <tr>
   <th width="128" valign="top" class="rowHead"><h3>Supported Platforms</h3></th>
   <td width="128" valign="top">
    idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
   </td>
  </tr>
 </tbody>
</table>
</div>
<br />

<h3>HTTP: Malformed Media File Processing Buffer Overflow</h3>
<br />
<p>This signature detects attempts to exploit a known vulnerability against Malformed Media File. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the affected application.</p>


<h4>Extended Description</h4>
<p>Nullsoft Winamp is prone to a denial-of-service vulnerability when processing malformed MIDI files.

Successfully exploiting this issue allows remote attackers to crash affected applications. Code execution may also be possible, but this has not been confirmed.

This issue is reported to affect Winamp 5.3; other versions may also be affected.</p>


<h4>Affected Products</h4>
<p>
<ul>
 
 <li>NullSoft Winamp 5.3</li>
 
</ul>
</p>




<h4>References</h4>
<p>
<ul>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/47088/discuss">47088</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/23568/discuss">23568</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/26804/discuss">26804</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/47084/discuss">47084</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/38837/discuss">38837</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/18507/discuss">18507</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/22938/discuss">22938</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/45221/discuss">45221</a></li>
 
 <li>BugTraq: <a href="http://online.securityfocus.com/bid/38733/discuss">38733</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1042">CVE-2010-1042</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3228">CVE-2006-3228</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4927">CVE-2008-4927</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5745">CVE-2008-5745</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3201">CVE-2009-3201</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3895">CVE-2007-3895</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1492">CVE-2007-1492</a></li>
 
 <li>CVE: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2180">CVE-2007-2180</a></li>
 
</ul>
</p>


      </div>
    </div>
    <!-- end tabular -->
    <!--start right column content  -->
    <!--begin footer -->
    <div class="seperator clear">
      <div class="footer" id="footer">
        <div class="fNav"> <a title="Site Map" href="http://www.juniper.net/us/en/site-map/">Site Map</a> </div>
        <div class="fNav"> <a title="RSS Feeds" href="http://rss.juniper.net">RSS Feeds</a> </div>
        <div class="fNav"> <a title="Careers" href="http://www.juniper.net/us/en/company/careers/">Careers</a> </div>
        <div class="fNav"> <a title="Accessibility" href="http://www.juniper.net/us/en/accessibility/">Accessibility</a> </div>
        <div class="fNav"> <a title="Feedback" href="http://www.juniper.net/cgi-bin/feedback">Feedback</a> </div>
        <div class="fNav"> <a title="Privacy Policy" href="http://www.juniper.net/us/en/privacy-policy/">Privacy & Policy</a> </div>
        <div class="fNav"> <a title="Legal Notices" href="http://www.juniper.net/us/en/legal-notices/">Legal Notices</a> </div>
        <div class="fCopyRight">Copyright &copy; 1999-2010 Juniper Networks, Inc. All rights reserved.</div>
      </div>
    </div>
    <!--end footer -->
  </div>
  <div class="footerBottom clear"></div>
  <!--stopindex-->
  <div id="loggedTop">
    <div class="left"><a title="Help" href="https://www.juniper.net/customers/csc/help/index.jsp">Help</a></div>
    <div class="hSep left">|</div>
    <div class="left"><a title="My Account" href="https://www.juniper.net/customers/csc/administer/">My Account</a></div>
    <div class="hSep left">|</div>
    <div class="left"><a title="Log Out" href="https://www.juniper.net/customers/support/logout.jsp">Log Out</a></div>
  </div>
  <!--startindex-->
</div>
</body>
</html>
