Multiple heap-based buffer overflows in bmp.w5s in Winamp before 5.63 build 3235 allow remote attackers to execute arbitrary code via the (1) strf chunk in BI_RGB or (2) UYVY video data in an AVI file, or (3) decompressed TechSmith Screen Capture Codec (TSCC) data in an AVI file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-07-22T17:00:00
Updated: 2024-08-06T20:21:04.211Z
Reserved: 2012-07-22T00:00:00
Link: CVE-2012-4045
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-07-22T17:55:03.337
Modified: 2024-11-21T01:42:06.413
Link: CVE-2012-4045
Redhat
No data.