First published: Fri Dec 31 2004(Updated: )
NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the command line.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Winamp iPod Plugin | =5.02 | |
Winamp | =5.02 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2384 has a severity rating that indicates it can cause a denial of service by crashing the application.
CVE-2004-2384 exploits occur when remote attackers create a file with a long filename that crashes Winamp when opened via the command line.
CVE-2004-2384 specifically affects Winamp version 5.02.
To mitigate CVE-2004-2384, ensure that the affected version of Winamp is not used or consider upgrading to a more secure version.
There is no official patch for CVE-2004-2384, so it's recommended to avoid using the vulnerable version.