CVE-2004-2384: Medium severity Nullsoft Winamp vulnerability
NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the command line.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2384?
CVE-2004-2384 has a severity rating that indicates it can cause a denial of service by crashing the application.
How does CVE-2004-2384 exploit occur?
CVE-2004-2384 exploits occur when remote attackers create a file with a long filename that crashes Winamp when opened via the command line.
What versions of Winamp are affected by CVE-2004-2384?
CVE-2004-2384 specifically affects Winamp version 5.02.
How can I mitigate the impact of CVE-2004-2384?
To mitigate CVE-2004-2384, ensure that the affected version of Winamp is not used or consider upgrading to a more secure version.
Is there a patch available for CVE-2004-2384?
There is no official patch for CVE-2004-2384, so it's recommended to avoid using the vulnerable version.