AplusWebMaster
Topic Starter
FYI…
- http://isc.sans.org/diary.php?date=2005-01-29
Updated January 30th 2005 00:08 UTC
"Winamp Exploit (POC) Released
Advisory info; http://secunia.com/advisories/13781/
Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch http://forums.winamp.com/showthread.php?s=&threadid;=202799
Software: The vulnerability has been reported in versions 5.0 through 5.08.
Solution:
Update to version 5.08c >>> http://www.winamp.com/player/ …"
- http://www.winamp.com/player/version_history.php
Winamp 5.08c:
* Created new eMusic bundles
* Critical Security bug fixed in in_mp4.dll and enc_mp4.dll and libmp4v2.dll
* HTTP Seeking corrected for webservers that refuse to return Accept-Range
* Critical Security buffer overflow fixed in in_cdda.dll

- http://isc.sans.org/diary.php?date=2005-01-29
Updated January 30th 2005 00:08 UTC
"Winamp Exploit (POC) Released
Advisory info; http://secunia.com/advisories/13781/
Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch http://forums.winamp.com/showthread.php?s=&threadid;=202799
Software: The vulnerability has been reported in versions 5.0 through 5.08.
Solution:
Update to version 5.08c >>> http://www.winamp.com/player/ …"
- http://www.winamp.com/player/version_history.php
Winamp 5.08c:
* Created new eMusic bundles
* Critical Security bug fixed in in_mp4.dll and enc_mp4.dll and libmp4v2.dll
* HTTP Seeking corrected for webservers that refuse to return Accept-Range
* Critical Security buffer overflow fixed in in_cdda.dll