«
Expand/Collapse
97 items tagged "winamp"
Related tags:
stack buffer [+],
denial of service [+],
buffer overflow [+],
heap [+],
winamp 5 [+],
service [+],
multiple buffer overflow [+],
midi [+],
integer [+],
denial [+],
buffer overflow vulnerabilities [+],
overflow error [+],
language [+],
install [+],
exploit [+],
nsv [+],
multiple [+],
buffer overflow vulnerability [+],
winamp version [+],
whatsnew [+],
stack [+],
poc [+],
plugin [+],
module [+],
maki [+],
libmikmod [+],
file [+],
execution [+],
dll [+],
command execution [+],
command [+],
avi [+],
windows xp sp3 [+],
vulnerabilities [+],
seh [+],
safer use [+],
pls file [+],
overwrite [+],
overflow vulnerability [+],
nullsoft winamp [+],
new skin [+],
mod [+],
midi plugin [+],
midi file format [+],
local buffer overflow [+],
hijacking [+],
denial of service exploit [+],
crash proof [+],
code execution [+],
avi processing [+],
avi file [+],
wnaspi32 dll [+],
vulnerability [+],
version [+],
timestamp [+],
remote [+],
nullsoft [+],
mtm [+],
memory corruption [+],
integer overflow vulnerability [+],
exception [+],
component [+],
bugtraq [+],
buffer overflow exploit [+],
browser [+],
bof [+],
overflow [+],
winamp player [+],
video content [+],
video [+],
trio [+],
tgz [+],
suffer [+],
sp3 [+],
security vulnerabilities [+],
security holes [+],
secunia [+],
school security [+],
research [+],
player [+],
old school [+],
modul [+],
midi parser [+],
meta [+],
mends [+],
malicious [+],
local [+],
handling [+],
full [+],
four [+],
flv [+],
exception handling [+],
essentials [+],
eip [+],
day [+],
critical security [+],
crash [+],
code [+],
browser memory [+],
avi parsing [+],
avi dos [+],
avi denial [+],
aslr [+],
arbitrary code execution [+],
adv [+],
Fixes [+],
winamp versions [+],
based buffer overflow [+],
txt [+],
stack overflow [+],
proof of concept [+],
integer overflow [+],
buffer [+],
exploits [+]
-
8:22
»
Packet Storm Security Exploits
This Metasploit module exploits a stack based buffer overflow in Winamp 5.55. The flaw exists in the gen_ff.dll and occurs while parsing a specially crafted MAKI file, where memmove is used with in a insecure way with user controlled data. To exploit the vulnerability the attacker must convince the attacker to install the generated mcvcore.maki file in the "scripts" directory of the default "Bento" skin, or generate a new skin using the crafted mcvcore.maki file. The module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
-
8:22
»
Packet Storm Security Recent Files
This Metasploit module exploits a stack based buffer overflow in Winamp 5.55. The flaw exists in the gen_ff.dll and occurs while parsing a specially crafted MAKI file, where memmove is used with in a insecure way with user controlled data. To exploit the vulnerability the attacker must convince the attacker to install the generated mcvcore.maki file in the "scripts" directory of the default "Bento" skin, or generate a new skin using the crafted mcvcore.maki file. The module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
-
8:22
»
Packet Storm Security Misc. Files
This Metasploit module exploits a stack based buffer overflow in Winamp 5.55. The flaw exists in the gen_ff.dll and occurs while parsing a specially crafted MAKI file, where memmove is used with in a insecure way with user controlled data. To exploit the vulnerability the attacker must convince the attacker to install the generated mcvcore.maki file in the "scripts" directory of the default "Bento" skin, or generate a new skin using the crafted mcvcore.maki file. The module has been tested successfully on Windows XP SP3 and Windows 7 SP1.
-
-
17:00
»
SecuriTeam
Huawei HG866 is is prone to a security-bypass vulnerability.
-
5:11
»
Packet Storm Security Advisories
Secunia Research has discovered two vulnerabilities in Winamp version 5.622, which can be exploited by malicious people to compromise a user's system. An integer overflow error in the in_avi.dll plugin when allocating memory using the number of streams header value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file. An integer overflow error in the in_avi.dll plugin when allocating memory using the RIFF INFO chunk's size value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file.
-
5:11
»
Packet Storm Security Recent Files
Secunia Research has discovered two vulnerabilities in Winamp version 5.622, which can be exploited by malicious people to compromise a user's system. An integer overflow error in the in_avi.dll plugin when allocating memory using the number of streams header value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file. An integer overflow error in the in_avi.dll plugin when allocating memory using the RIFF INFO chunk's size value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file.
-
5:11
»
Packet Storm Security Misc. Files
Secunia Research has discovered two vulnerabilities in Winamp version 5.622, which can be exploited by malicious people to compromise a user's system. An integer overflow error in the in_avi.dll plugin when allocating memory using the number of streams header value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file. An integer overflow error in the in_avi.dll plugin when allocating memory using the RIFF INFO chunk's size value can be exploited to cause a heap-based buffer overflow via a specially crafted AVI file.
-
-
6:14
»
Packet Storm Security Exploits
Winamp versions 5.61 and below suffer from multiple heap overflows and corruption and an integer overflow. Proof of concept code included.
-
9:15
»
Packet Storm Security Exploits
Winamp version 5.6.1 remote command execution exploit that creates a malicious .pls file which downloads http://127.0.0.1:8888/ked/k.exe and executes it.
-
9:15
»
Packet Storm Security Recent Files
Winamp version 5.6.1 remote command execution exploit that creates a malicious .pls file which downloads http://127.0.0.1:8888/ked/k.exe and executes it.
-
9:15
»
Packet Storm Security Misc. Files
Winamp version 5.6.1 remote command execution exploit that creates a malicious .pls file which downloads http://127.0.0.1:8888/ked/k.exe and executes it.
-
-
19:19
»
SecuriTeam
Winamp contains a vulnerability that can be exploited to cause a heap-based buffer overflow via a specially crafted NSV stream or file.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
19:17
»
SecuriTeam
Winamp contains a vulnerability that can be exploited to cause a heap-based buffer overflow via a specially crafted NSV stream or file.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
9:52
»
Packet Storm Security Advisories
Winamp version 5.581 suffers from an issue where a MIDI file format parsing vulnerability exists in the in_midi plugin and can be exploited with a specially crafted input file. The plugin suffers from an integer wrapping flaw which leads to a heap overflow. If an attacker is able to entice the user to open a malicious file, successful exploitation leads to code being executed in the context of the logged in user.
-
9:52
»
Packet Storm Security Recent Files
Winamp version 5.581 suffers from an issue where a MIDI file format parsing vulnerability exists in the in_midi plugin and can be exploited with a specially crafted input file. The plugin suffers from an integer wrapping flaw which leads to a heap overflow. If an attacker is able to entice the user to open a malicious file, successful exploitation leads to code being executed in the context of the logged in user.
-
9:52
»
Packet Storm Security Misc. Files
Winamp version 5.581 suffers from an issue where a MIDI file format parsing vulnerability exists in the in_midi plugin and can be exploited with a specially crafted input file. The plugin suffers from an integer wrapping flaw which leads to a heap overflow. If an attacker is able to entice the user to open a malicious file, successful exploitation leads to code being executed in the context of the logged in user.
-
-
21:03
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Winamp, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by an integer overflow error in the "in_nsv.dll" plugin when parsing the Table of Contents. This can be exploited to cause a heap-based buffer overflow via a specially crafted NSV stream or file. Successful exploitation allows execution of arbitrary code.
-
21:03
»
Packet Storm Security Recent Files
Secunia Research has discovered a vulnerability in Winamp, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by an integer overflow error in the "in_nsv.dll" plugin when parsing the Table of Contents. This can be exploited to cause a heap-based buffer overflow via a specially crafted NSV stream or file. Successful exploitation allows execution of arbitrary code.
-
21:03
»
Packet Storm Security Misc. Files
Secunia Research has discovered a vulnerability in Winamp, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by an integer overflow error in the "in_nsv.dll" plugin when parsing the Table of Contents. This can be exploited to cause a heap-based buffer overflow via a specially crafted NSV stream or file. Successful exploitation allows execution of arbitrary code.
-
-
21:01
»
Packet Storm Security Exploits
Winamp versions 5.5.8.2985 and below suffer from various integer overflows and a buffer overflow. Demonstration proof of concept code included.
-
-
21:37
»
SecuriTeam
Integer overflow vulnerabilities were discovered in Winamp Player.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
1:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp v5.571 Malicious AVI Denial of Service
-
-
1:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp v5.572 Local BoF Exploit (Win7 ASLR and DEP Bypass)
-
-
1:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp v5.572 local BOF exploit (EIP & SEH DEP Bypass)
-
-
1:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp V5.572 0day suffer from local CRASH PoC
-
-
1:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp 5.572 whatsnew.txt SEH (meta)
-
-
9:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp 5.57 (Browser) IE Denial of Service Exploit
-
-
6:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)
Winamp 5.572 Exploit - SEH
-
-
11:00
»
0day.today (was: 1337day, Inj3ct0r, 1337db)