CVE-2002-2195: Buffer Overflow

Published Dec 31, 2002
·
Updated

Buffer overflow in the version update check for Winamp 2.80 and earlier allows remote attackers who can spoof www.winamp.com to execute arbitrary code via a long server response.

Affected Software

17 affected components
Nullsoft Winamp=2.70
Nullsoft Winamp=2.72
Nullsoft Winamp=2.73
Nullsoft Winamp=2.75
Nullsoft Winamp=2.62
Nullsoft Winamp=2.65
Nullsoft Winamp=2.76
Nullsoft Winamp=2.80
Nullsoft Winamp=2.74
Nullsoft Winamp=2.71
Nullsoft Winamp=2.78
Nullsoft Winamp=2.61
Nullsoft Winamp=2.70
Nullsoft Winamp=2.79
Nullsoft Winamp=2.60
Nullsoft Winamp=2.64
Nullsoft Winamp=2.73

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Compensating control

    Block or restrict network access from endpoints to the hostname www.winamp.com (for example via perimeter firewall rules, proxy allowlist/denylist, or internal DNS to prevent resolution) to stop Winamp's update check from contacting potentially spoofed update servers.

  2. Operational

    Isolate or disconnect systems running NullSoft Winamp version 2.80 and earlier from untrusted networks until a vendor-supplied fix is available.

Event History

Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Nov 16, 2005
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2002-2195?

CVE-2002-2195 is considered a critical vulnerability due to its ability to allow remote attackers to execute arbitrary code.

2

How do I fix CVE-2002-2195?

To fix CVE-2002-2195, upgrade to Winamp version 2.81 or later, which resolves the buffer overflow vulnerability.

3

Which versions of Winamp are affected by CVE-2002-2195?

CVE-2002-2195 affects Winamp versions 2.80 and earlier, including versions 2.60 through 2.79.

4

What type of attack does CVE-2002-2195 exploit?

CVE-2002-2195 exploits a buffer overflow vulnerability through a maliciously crafted response from a server masquerading as www.winamp.com.

5

Can a user prevent exploits targeting CVE-2002-2195?

Users can prevent exploits of CVE-2002-2195 by avoiding the use of outdated Winamp versions and applying security patches promptly.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203