Winamp < 5.57 Multiple Vulnerabilities

high Nessus Plugin ID 43181

Synopsis

The remote Windows host contains a multimedia application that is affected by multiple vulnerabilities.

Description

The remote host is running Winamp, a media player for Windows.

The version of Winamp installed on the remote host is earlier than 5.57. Such versions are potentially affected by multiple issues :

- A boundary error in the Module Decoder Plug-in exists when parsing samples and can be exploited to cause a heap-based buffer overflow. (CVE-2009-3995)

- An error in the Module Decoder Plug-in when parsing 'Ultratracker' fields and can be exploited to cause a heap-based buffer overflow. (CVE-2009-3996)

- An integer overflow error in the Module Decoder Plug-in when parsing 'Oktalyzer' files and can be exploited to cause a heap-based buffer overflow. (CVE-2009-3997)
- Integer overflow errors within the 'jpeg.w5s' and 'png.w5s' filters when processing malformed 'JPEG' or 'PNG' data in a media file. (CVE-2009-4356)

Solution

Upgrade to Winamp version 5.57 or later.

See Also

http://www.nessus.org/u?0e4f075b

https://secuniaresearch.flexerasoftware.com/secunia_research/2009-53/

https://secuniaresearch.flexerasoftware.com/secunia_research/2009-56/

https://secuniaresearch.flexerasoftware.com/secunia_research/2009-57/

https://www.securityfocus.com/archive/1/508532/30/0/threaded

Plugin Details

Severity: High

ID: 43181

File Name: winamp_557.nasl

Version: 1.17

Type: local

Agent: windows

Family: Windows

Published: 12/17/2009

Updated: 4/11/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 7.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/a:nullsoft:winamp

Required KB Items: SMB/Winamp/Version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 12/17/2009

Vulnerability Publication Date: 12/17/2009

Exploitable With

Core Impact

Reference Information

CVE: CVE-2009-3995, CVE-2009-3996, CVE-2009-3997, CVE-2009-4356

BID: 37374, 37387

CWE: 119, 189

SECUNIA: 37495