CVE-2005-3188

critical

Description

Buffer overflow in Nullsoft Winamp 5.094 allows remote attackers to execute arbitrary code via (1) an m3u file containing a long line ending in .wma or (2) a pls file containing a long File1 value ending in .wma, a different vulnerability than CVE-2006-0476.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/24417

http://www.securityfocus.com/bid/16462

http://www.osvdb.org/22975

http://securitytracker.com/id?1015621

http://securitytracker.com/id?1015565

http://securityreason.com/securityalert/397

Details

Source: Mitre, NVD

Published: 2005-12-31

Updated: 2017-07-11

Risk Information

CVSS v2

Base Score: 7.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical