Announcement

Collapse
No announcement yet.

Winamp security flaw

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Winamp security flaw

    NGSSoftware is reporting a flaw in the way the popular Nullsoft Winamp loads certain metafiles could be exploited by an attacker to overwrite heap memory. By exploiting the flaw, the attacker could run arbitrary code on the affected machine. A fix is available in Winamp 5.05



    appears to be something of a IE security zone flaw of some such, nobody knows for sure quite yet...

    Here's a link from Winamp's forums on the subject...

    "Be who you are and say what you feel, because those who mind don't matter, and those who matter don't mind." -- Dr. Seuss

    "Always do good. It will gratify some and astonish the rest." ~Mark Twain

  • #2
    I assume this doesn't effect Winamp 2?

    Comment


    • #3
      You're right, KD. Doesn't even affect Winamp 5 and a proper browser

      AZ
      There's an Opera in my macbook.

      Comment


      • #4
        This is a Winamp problem rather than an IE one -see http://secunia.com/advisories/12381

        They only mention 3.x & 5.x -when did winamp add skinning? With IE it can be exploited remotely. With Opera/Firefox it needs a user to attempt to install the skin.
        MURC COC Minister of Wierd Confusion (MWC)

        Comment

        Working...
        X