LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT file that contains a value that is used as an offset, which triggers memory corruption.
Link | Tags |
---|---|
http://osvdb.org/34432 | vdb entry |
http://www.securitytracker.com/id?1017886 | vdb entry |
http://www.piotrbania.com/all/adv/nullsoft-winamp-libsndfile-adv.txt | |
http://www.securityfocus.com/archive/1/464889/100/0/threaded | mailing list |
http://www.vupen.com/english/advisories/2007/1286 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/33481 | vdb entry |
http://securityreason.com/securityalert/2541 | third party advisory |
http://secunia.com/advisories/24766 | third party advisory |
http://marc.info/?l=dailydave&m=117589848432659&w=2 | mailing list |
http://www.securityfocus.com/bid/23351 | vdb entry |