Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:WINAMP:MP4-MC

Severity

High

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

Nullsoft Winamp MP4 Files Handling Memory Corruption

Release Date

2011/08/04

Update Number

1967

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: Nullsoft Winamp MP4 Files Handling Memory Corruption


This signature detects attempts to exploit a known memory corruption vulnerability against Nullsoft Winamp. A successful attack can lead to arbitrary code execution.

Extended Description

Winamp is prone to a buffer-overflow vulnerability when it attempts to process certain files. This issue occurs because the application fails to properly check boundaries on user-supplied data before copying it to an insufficiently sized memory buffer. Successful exploits can allow attackers to execute arbitrary code with the privileges of the user running the vulnerable application. Failed exploit attempts will likely result in denial-of-service conditions. This issue affects Winamp 5.02 through 5.34. UPDATE: The vendor states that this issue will be addressed in Winamp 5.35.

Affected Products

  • NullSoft Winamp 5.11
  • NullSoft Winamp 5.12
  • NullSoft Winamp 5.13
  • NullSoft Winamp 5.2
  • NullSoft Winamp 5.21
  • NullSoft Winamp 5.22
  • NullSoft Winamp 5.24
  • NullSoft Winamp 5.3
  • NullSoft Winamp 5.31
  • NullSoft Winamp 5.3.2
  • NullSoft Winamp 5.33
  • NullSoft Winamp 5.34

References

  • BugTraq: 23723

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out