CVE-2002-1177: Buffer Overflow
Published Dec 20, 2002
·Updated
Multiple buffer overflows in Winamp 3.0, when displaying an MP3 in the Media Library window, allows remote attackers to execute arbitrary code via an MP3 file containing a long (1) Artist or (2) Album ID3v2 tag.
Affected Software
1 affected component
Nullsoft Winamp=3.0
Event History
Dec 20, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1177?
CVE-2002-1177 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2002-1177?
To fix CVE-2002-1177, upgrade to a patched version of Winamp that addresses the buffer overflow vulnerability.
3
Who is affected by CVE-2002-1177?
CVE-2002-1177 primarily affects users of Winamp version 3.0.
4
What types of attacks can exploit CVE-2002-1177?
CVE-2002-1177 can be exploited via crafted MP3 files containing overly long ID3v2 tags.
5
Is CVE-2002-1177 still relevant today?
While CVE-2002-1177 is an old vulnerability, it highlights the importance of keeping software updated to prevent similar issues.