First published: Wed Dec 01 2004(Updated: )
Stack-based buffer overflow in IN_CDDA.dll in Winamp 5.05, and possibly other versions including 5.06, allows remote attackers to execute arbitrary code via a certain .m3u playlist file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Winamp iPod Plugin | =5.05 | |
Winamp iPod Plugin | =5.02 | |
Winamp iPod Plugin | =5.01 | |
Winamp iPod Plugin | =5.04 | |
Winamp iPod Plugin | =5.06 | |
Winamp iPod Plugin | =5.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1119 is classified as a critical vulnerability due to its potential to allow remote code execution.
To mitigate CVE-2004-1119, users should upgrade to a patched version of Winamp that addresses this buffer overflow issue.
CVE-2004-1119 affects Winamp versions 5.01 through 5.06, including 5.05.
CVE-2004-1119 enables remote attackers to execute arbitrary code via a specially crafted .m3u playlist file.
Yes, exploitation of CVE-2004-1119 typically requires the user to open a malicious playlist file.