First published: Tue Apr 10 2007(Updated: )
LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT file that contains a value that is used as an offset, which triggers memory corruption.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Winamp iPod Plugin | =5.33 | |
Winamp | =5.33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1921 is considered a high severity vulnerability due to its potential to allow remote code execution.
To remediate CVE-2007-1921, update to a patched version of the affected software, specifically Winamp versions newer than 5.33.
CVE-2007-1921 primarily affects Nullsoft Winamp 5.33, but may also impact other products utilizing LIBSNDFILE.DLL.
CVE-2007-1921 can be exploited by attackers using specially crafted .MAT files to trigger memory corruption leading to arbitrary code execution.
Users and administrators of vulnerable software are responsible for applying updates or mitigations to address CVE-2007-1921.