HIGH
Multiple heap-based buffer overflows in vp6.w5s (aka the VP6 codec) in Winamp before 5.59 Beta build 3033 might allow remote attackers to execute arbitrary code via a crafted VP6 (1) video file or (2) video stream
Published Nov 5, 2010
9.3
HIGHCVSS 2.0
EPSS 5.31%
Description
Multiple heap-based buffer overflows in vp6.w5s (aka the VP6 codec) in Winamp before 5.59 Beta build 3033 might allow remote attackers to execute arbitrary code via a crafted VP6 (1) video file or (2) video stream.
Affected products
No data.
OR
- ≤ 5.581
- 0.20a
- 0.92
- 1.006
- 1.90
- 2.0
- 2.4
- 2.5e
- 2.6
- 2.6x
- 2.7x
- 2.9
- 2.10
- 2.24
- 2.50
- 2.60
- 2.60
- 2.60
- 2.61
- 2.61
- 2.62
- 2.62
- 2.64
- 2.64
- 2.65
- 2.70
- 2.70
- 2.71
- 2.72
- 2.73
- 2.73
- 2.74
- 2.75
- 2.76
- 2.77
- 2.78
- 2.79
- 2.80
- 2.81
- 2.90
- 2.91
- 2.92
- 2.95
- 3.0
- 3.1
- 5.0
- 5.0.1
- 5.0.2
- 5.01
- 5.1
- 5.1
- 5.02
- 5.2
- 5.3
- 5.03
- 5.03a
- 5.04
- 5.05
- 5.5
- 5.06
- 5.07
- 5.08
- 5.08
- 5.08
- 5.08
- 5.08c
- 5.08d
- 5.08e
- 5.09
- 5.11
- 5.12
- 5.13
- 5.21
- 5.22
- 5.23
- 5.24
- 5.31
- 5.32
- 5.33
- 5.34
- 5.35
- 5.36
- 5.51
- 5.52
- 5.53
- 5.54
- 5.55
- 5.56
- 5.57
- 5.58
- 5.091
- 5.093
- 5.094
- 5.111
- 5.112
- 5.531
- 5.541
- 5.551
- 5.552
- 5.572
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- http://forums.winamp.com/showthread.php?t=322995 x_refsource_CONFIRM
- http://secunia.com/secunia_research/2010-95/ x_refsource_MISCVendor Advisory
- http://www.securityfocus.com/archive/1/514484/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/44466 vdb-entryx_refsource_BID
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12056 vdb-entrysignaturex_refsource_OVAL
| Link | Providers | Tags |
|---|---|---|
| http://forums.winamp.com/showthread.php?t=322995 | x_refsource_CONFIRM | |
| http://secunia.com/secunia_research/2010-95/ | x_refsource_MISCVendor Advisory | |
| http://www.securityfocus.com/archive/1/514484/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/44466 | vdb-entryx_refsource_BID | |
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12056 | vdb-entrysignaturex_refsource_OVAL |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner flexera
Published Nov 5, 2010
Updated Aug 7, 2024
Reserved Apr 26, 2010
Link CVE-2010-1523
CISA Vulnrichment
Updated n/a