VID |
28277 |
Severity |
40 |
Port |
139,445 |
Protocol |
TCP |
Class |
SMB |
Detailed Description |
A version of WinAMP program which is older than 5.58 has been installed on the host. AOL Nullsoft Winamp is a freely available media player for Microsoft Windows platforms. Winamp versions prior to 5.58 could allow a remote attacker to execute arbitrary code on the affected host, caused by improper handling of 'VP6' files. A remote attacker could exploit this vulnerability by creating a specially-crafted VP6 file, and enticing unsuspecting users to process the file. It might allow the attacker to execute arbitrary code on the affected system or possibly cause a denial of service.
* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.
* References: http://www.winamp.com/help/Version_History#Winamp_5.58 http://forums.winamp.com/showthread.php?t=320278
* Platforms Affected: AOL Nullsoft Winamp versions prior to 5.58 Microsoft Windows Any version |
Recommendation |
Upgrade to the latest version of winamp (5.58 or later), available from the Nullsoft Winamp Download Web page at http://www.winamp.com/player/ |
Related URL |
(CVE) |
Related URL |
41591 (SecurityFocus) |
Related URL |
(ISS) |
|