Nullsoft / Winamp
61 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2014-3442 | Winamp 5.666 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) via a malformed .FLV file, related to f263.w5s. | MEDIUM | 4.3 | May 23, 2014 |
| CVE-2013-4694 | Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possibly execut… | HIGH | 7.5 | Apr 16, 2014 |
| CVE-2012-4045 | Multiple heap-based buffer overflows in bmp.w5s in Winamp before 5.63 build 3235 allow remote attackers to execute arbitrary code via the (1) strf chunk in BI_… | HIGH | 7.5 | Jul 22, 2012 |
| CVE-2012-3890 | The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact… | MEDIUM | 6.8 | Jul 11, 2012 |
| CVE-2012-3889 | The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via… | MEDIUM | 6.8 | Jul 11, 2012 |
| CVE-2011-4857 | Heap-based buffer overflow in the in_mod.dll plugin in Winamp before 5.623 allows remote attackers to execute arbitrary code via crafted song message data in a… | HIGH | 10.0 | Dec 16, 2011 |
| CVE-2011-3834 | Multiple integer overflows in the in_avi.dll plugin in Winamp before 5.623 allow remote attackers to execute arbitrary code via an AVI file with a crafted valu… | HIGH | 9.3 | Dec 16, 2011 |
| CVE-2010-4374 | The in_mkv plugin in Winamp before 5.6 allows remote attackers to cause a denial of service (application crash) via a Matroska Video (MKV) file containing a st… | MEDIUM | 4.3 | Dec 2, 2010 |
| CVE-2010-4373 | The in_mp4 plugin in Winamp before 5.6 allows remote attackers to cause a denial of service (application crash) via crafted (1) metadata or (2) albumart in an… | MEDIUM | 4.3 | Dec 2, 2010 |
| CVE-2010-4372 | Integer overflow in the in_nsv plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to improper allocation of… | HIGH | 9.3 | Dec 2, 2010 |
| CVE-2010-4371 | Buffer overflow in the in_mod plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to the comment box. | HIGH | 9.3 | Dec 2, 2010 |
| CVE-2010-4370 | Multiple integer overflows in the in_midi plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted MIDI file that triggers a… | HIGH | 9.3 | Dec 2, 2010 |
| CVE-2010-2586 | Multiple integer overflows in in_nsv.dll in the in_nsv plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted Table of Cont… | HIGH | 9.3 | Dec 2, 2010 |
| CVE-2010-1523 | Multiple heap-based buffer overflows in vp6.w5s (aka the VP6 codec) in Winamp before 5.59 Beta build 3033 might allow remote attackers to execute arbitrary cod… | HIGH | 9.3 | Nov 5, 2010 |
| CVE-2010-3137 | Untrusted search path vulnerability in Nullsoft Winamp 5.581, and probably other versions, allows local users, and possibly remote attackers, to execute arbitr… | HIGH | 9.3 | Aug 26, 2010 |
| CVE-2009-4356 | Multiple integer overflows in the jpeg.w5s and png.w5s filters in Winamp before 5.57 allow remote attackers to execute arbitrary code via malformed (1) JPEG or… | HIGH | 9.3 | Dec 18, 2009 |
| CVE-2009-3996 | libmikmod: arbitrary code execution via crafted Impulse Tracker or Ultratracker files | HIGH | 9.3 | Dec 18, 2009 |
| CVE-2009-3997 | Integer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp before 5.57 might allow remote attackers to execute arbitrary code via an Oktalyzer f… | HIGH | 9.3 | Dec 18, 2009 |
| CVE-2009-3995 | libmikmod: arbitrary code execution via crafted Impulse Tracker or Ultratracker files | HIGH | 9.3 | Dec 18, 2009 |
| CVE-2009-1831 | The Nullsoft Modern Skins Support module (gen_ff.dll) in Nullsoft Winamp before 5.552 allows remote attackers to execute arbitrary code via a crafted MAKI file… | HIGH | 9.3 | May 29, 2009 |
| CVE-2009-1791 | libsndfile AIFF file heap based buffer overflow | HIGH | 9.3 | May 26, 2009 |
| CVE-2009-1788 | libsndfile VOC file heap based buffer overflow | HIGH | 9.3 | May 26, 2009 |
| CVE-2009-0186 | libsndfile: overflows may lead to execution of arbitrary code | HIGH | 9.3 | Mar 5, 2009 |
| CVE-2009-0263 | Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large C… | HIGH | 10.0 | Jan 23, 2009 |
| CVE-2008-3567 | Cross-zone scripting vulnerability in the NowPlaying functionality in NullSoft Winamp before 5.541 allows remote attackers to conduct cross-site scripting (XSS… | MEDIUM | 4.3 | Aug 10, 2008 |
Showing 1 to 25 of 61 CVEs