Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted .m3u file that causes an incorrect strncpy function call when the player pauses or stops the file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Winamp | Nullsoft | 5.12 (including) | 5.12 (including) |
Winamp | Nullsoft | 5.13 (including) | 5.13 (including) |