VYPR
Unrated severityNVD Advisory· Published Jan 22, 2008· Updated Apr 23, 2026

CVE-2008-0065

CVE-2008-0065

Description

Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles.

Affected products

3
  • cpe:2.3:a:winamp:nullsoft_winamp:5.5:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:winamp:nullsoft_winamp:5.5:*:*:*:*:*:*:*
    • cpe:2.3:a:winamp:nullsoft_winamp:5.21:*:*:*:*:*:*:*
    • cpe:2.3:a:winamp:nullsoft_winamp:5.51:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.