The Haus

Thursday, December 19, 2002

MP3 Buffer Overrun in Winamp, WinXP

Winamp and Windows XP have some pretty serious buffer overrun problems with MP3s with malformed ID3v2 tags. Both could allow remote code execution. The WinXP version is more troubling, because the file wouldn't have to be played. The directory containing the file would just have to be browsed. Thankfully, there's a new version of Winamp available and a patch from Microsoft to fix those problems. Thanks Slashdot.

News for 12/19/2002

Recent Headlines

January 5, 2015: It Returns!
August 10, 2007: SCO SUCKS IT DOWN!
July 5, 2007: Slackware 12.0 Released
May 20, 2007: PhpBB 3.0 RC 1 Released
February 2, 2007: DOOM3 1.31 Patch

January 27, 2007: Join the World Community Grid
January 17, 2007: Flash Player 9 for Linux
December 30, 2006: Darkness over Daggerford 1.2
December 19, 2006: Pocket Tunes 4.0 Released
December 9, 2006: WRT54G 1.01.1 Firmware OK with Linux/Mac

All original information on this website is copyright © TheHaus.Net, 1999-2005. The use of original images, text, and/or code from this website without expressed written consent is prohibited. The authors of this site cannot be held responsible for any damage, real or imagined, which comes from the use of information presented on this site. All trademarks used are the properties of their respective owners. This site is not to be used as a floatation device (but if you try, I want a video tape of it).