CVE-2002-1524: Buffer Overflow
Published Apr 2, 2003
·Updated
Buffer overflow in XML parser in wsabi.dll of Winamp 3 (1.0.0.488) allows remote attackers to execute arbitrary code via a skin file (.wal) with a long include file tag.
Affected Software
1 affected component
Nullsoft Winamp=3.0
Event History
Apr 2, 2003
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1524?
CVE-2002-1524 has a critical severity level due to its potential for remote code execution.
2
How do I fix CVE-2002-1524?
To fix CVE-2002-1524, upgrade Winamp to a version later than 3.0 that does not contain this vulnerability.
3
What types of files are involved in CVE-2002-1524?
CVE-2002-1524 involves skin files with a .wal extension that contain long include file tags.
4
Who is affected by CVE-2002-1524?
Users of Winamp 3 version 3.0 are affected by CVE-2002-1524.
5
What does CVE-2002-1524 allow an attacker to do?
CVE-2002-1524 allows an attacker to execute arbitrary code on a vulnerable system.