Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3441 (Winamp)

BugsAlert Home > CVE-2008-3441 (Winamp)
 
 

Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3441

Learn more about CVE-2008-3441 (Winamp)
 
Tags: cve-2008-3441 winamp

Related Items

      Trillian Display Name Processing Memory Corruption

      PE_LOOKED.MA-O

      MegaBBS ASP Forum Cross-Site Scripting

      Trend Micro OfficeScan "cgiRecvFile.exe" Buffer Overflow

      FrSIRT - Blaze Media Pro NMSDVDX ActiveX File Overwrite Vulnerabilities

      CVE-2008-2290 (Altiris Deployment Solution)

      CVE-2007-5894 (Kerberos 5)

 

Pixel