CVE-2007-4392: Medium severity Nullsoft Winamp vulnerability
Published Aug 17, 2007
·Updated
Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
Affected Software
1 affected component
Nullsoft Winamp=5.35
Event History
Aug 17, 2007
CVE Published
10:17 PM
Aug 18, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4392?
CVE-2007-4392 has a severity level that indicates it can lead to a denial of service due to application crashes.
2
How do I fix CVE-2007-4392?
To resolve CVE-2007-4392, users should upgrade to a safer version of Winamp that does not have this vulnerability.
3
What type of attack does CVE-2007-4392 involve?
CVE-2007-4392 involves a denial of service attack through a specially crafted M3U file.
4
Which version of Winamp is affected by CVE-2007-4392?
CVE-2007-4392 specifically affects Winamp version 5.35.
5
Can the CVE-2007-4392 vulnerability be exploited remotely?
Yes, CVE-2007-4392 can be exploited by remote attackers through malformed M3U files.