internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Internet Explorer 8

Most Popular Software Downloads
Mozilla Firefox 3.0
QuickTime for Windows
Ad-Aware 2008 Free
Internet Explorer 8
Adobe Flash Player
Paint Shop Pro
Windows Live Suite
AVG Anti-Virus Free
Winamp
Spybot Search and Destroy

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

Winamp Has a Bug
New Bug Discovered in MP3 Player
Sean Michael Kerner

In the early days of the MP3 era, many users' first player was Winamp. If you happen to be using Winamp today, you better upgrade now to prevent a hacker from stealing your tunes and possible a whole lot more.

US-CERT has issued an advisory for Winamp related to a buffer overflow vulnerability that could allow a hacker to execute arbitrary code.

The vulnerability stems from the way that Winamp handles playlists with long computer names. Of particular note is that not a whole lot of user interaction is required for a hacker to take advantage of the vulnerability.

In order to take advantage of the vulnerability, the hacker will have to trick the user into opening the maliciously crafted playlist file. According to the advisory, this could happen without any user interaction as the result of viewing a Web page or other HTML document.

Users are advised to immediately update to Winamp version 5.13, which corrects the flaw.

Winamp was originally created by Nullsoft, which was bought by America Online in 1999. It competes with Microsoft Windows Media Player, Real Networks Real Player and Apple's iTunes.

The current vulnerability is not the first time a security flaw has appeared in Winamp. In 2004 a zero-day exploit targeted Winamp skins.

Winamp's media peer have of course also been exposed to have security flaws over the years. Most recently, iTunes users were warned to update their QuickTime software in order to protect against a security vulnerability.

News courtesy of internetnews.com

February 2, 2005


Download Winamp Now!Download

View All MP3 Players

Contents:
1. New Bug Discovered in MP3 Player


Additional Articles:

  • Nullsoft WinAmp 1.92
  • Nullsoft Winamp 2.23
  • Nullsoft Winamp 2.50c
  • Beware That Winamp Skin!
  • Winamp Skin Flaw Patched




  • JupiterOnlineMedia

    internet.comearthweb.comDevx.commediabistro.comGraphics.com

    Search:

    Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

    Jupitermedia Corporate Info


    Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

    Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers