CVE Vulnerabilities

CVE-2006-0708

Published: Feb 15, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple buffer overflows in NullSoft Winamp 5.13 and earlier allow remote attackers to execute arbitrary code via (1) an m3u file containing a long URL ending in .wma, (2) a pls file containing a File1 field with a long URL ending in .wma, or (3) an m3u file with a long filename, variants of CVE-2005-3188 and CVE-2006-0476.

Affected Software

NameVendorStart VersionEnd Version
WinampNullsoft5.0 (including)5.0 (including)
WinampNullsoft5.01 (including)5.01 (including)
WinampNullsoft5.02 (including)5.02 (including)
WinampNullsoft5.03 (including)5.03 (including)
WinampNullsoft5.04 (including)5.04 (including)
WinampNullsoft5.05 (including)5.05 (including)
WinampNullsoft5.06 (including)5.06 (including)
WinampNullsoft5.07 (including)5.07 (including)
WinampNullsoft5.08c (including)5.08c (including)
WinampNullsoft5.08d (including)5.08d (including)
WinampNullsoft5.08e (including)5.08e (including)
WinampNullsoft5.09 (including)5.09 (including)
WinampNullsoft5.11 (including)5.11 (including)
WinampNullsoft5.12 (including)5.12 (including)
WinampNullsoft5.13 (including)5.13 (including)
WinampNullsoft5.091 (including)5.091 (including)
WinampNullsoft5.093 (including)5.093 (including)
WinampNullsoft5.094 (including)5.094 (including)

References