CVE-2010-1523

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
06/11/2010
Last modified:
11/04/2025

Description

Multiple heap-based buffer overflows in vp6.w5s (aka the VP6 codec) in Winamp before 5.59 Beta build 3033 might allow remote attackers to execute arbitrary code via a crafted VP6 (1) video file or (2) video stream.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nullsoft:winamp:*:*:*:*:*:*:*:* 5.581 (including)
cpe:2.3:a:nullsoft:winamp:0.20a:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:0.92:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:1.006:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:1.90:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.0:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.4:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.5e:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.6:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.6x:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.7x:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.9:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.10:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.24:*:*:*:*:*:*:*
cpe:2.3:a:nullsoft:winamp:2.50:*:*:*:*:*:*:*