9.3

CVE-2011-3834

Multiple integer overflows in the in_avi.dll plugin in Winamp before 5.623 allow remote attackers to execute arbitrary code via an AVI file with a crafted value for (1) the number of streams or (2) the size of the RIFF INFO chunk, leading to a heap-based buffer overflow.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NullsoftWinamp Version <= 5.622
NullsoftWinamp Version0.20a
NullsoftWinamp Version0.92
NullsoftWinamp Version1.006
NullsoftWinamp Version1.90
NullsoftWinamp Version2.0
NullsoftWinamp Version2.6
NullsoftWinamp Version2.9
NullsoftWinamp Version2.10
NullsoftWinamp Version2.91
NullsoftWinamp Version2.92
NullsoftWinamp Version2.95
NullsoftWinamp Version5.0
NullsoftWinamp Version5.01
NullsoftWinamp Version5.1 Update- Editionsurround
NullsoftWinamp Version5.02
NullsoftWinamp Version5.2
NullsoftWinamp Version5.3
NullsoftWinamp Version5.03
NullsoftWinamp Version5.04
NullsoftWinamp Version5.05
NullsoftWinamp Version5.5
NullsoftWinamp Version5.6
NullsoftWinamp Version5.06
NullsoftWinamp Version5.07
NullsoftWinamp Version5.08c
NullsoftWinamp Version5.08d
NullsoftWinamp Version5.08e
NullsoftWinamp Version5.09
NullsoftWinamp Version5.11
NullsoftWinamp Version5.12
NullsoftWinamp Version5.13
NullsoftWinamp Version5.21
NullsoftWinamp Version5.22
NullsoftWinamp Version5.23
NullsoftWinamp Version5.24
NullsoftWinamp Version5.31
NullsoftWinamp Version5.32
NullsoftWinamp Version5.33
NullsoftWinamp Version5.34
NullsoftWinamp Version5.35
NullsoftWinamp Version5.51
NullsoftWinamp Version5.52
NullsoftWinamp Version5.53
NullsoftWinamp Version5.54
NullsoftWinamp Version5.55
NullsoftWinamp Version5.56
NullsoftWinamp Version5.57
NullsoftWinamp Version5.58
NullsoftWinamp Version5.091
NullsoftWinamp Version5.093
NullsoftWinamp Version5.094
NullsoftWinamp Version5.111
NullsoftWinamp Version5.112
NullsoftWinamp Version5.531
NullsoftWinamp Version5.541
NullsoftWinamp Version5.551
NullsoftWinamp Version5.552
NullsoftWinamp Version5.572
NullsoftWinamp Version5.581
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.37% 0.906
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C