Search

published date: July 20, 2000

CVE-2000-0624 : Buffer Overflow Vulnerability

Description

Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: extension in the M3U playlist.

Product(s):

  • Nullsoft Winamp
  • Nullsoft Winamp 0.20a
  • Nullsoft Winamp 0.92
  • Nullsoft Winamp 1.006
  • Nullsoft Winamp 1.90
  • Nullsoft Winamp 2.0

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-2000-0624, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2000-0624 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?