WINAMP.COM | Forums : Powered by vBulletin version 2.3.9 WINAMP.COM | Forums > Winamp > Winamp Bug Reports > Winamp Computer Name Handling Buffer Overflow Vulnerability
  Last Thread   Next Thread
Author
Thread Post New Thread    Post A Reply
djsurge
Junior Member

Registered: Nov 2005
From: Chicago, IL

Winamp Computer Name Handling Buffer Overflow Vulnerability

So... this came up on my google news, couldn't find it reported on winamp forum so... sorry if you guys know this already, but it's kinda big.
URL submitted by user.
URL submitted by user.
URL submitted by user.

Quick Link | Report this post to a moderator | IP: Logged

djsurge is offline Old Post 01-30-2006 06:08 PM
Click Here to See the Profile for djsurge Click here to Send djsurge a Private Message Find more posts by djsurge Add djsurge to your buddy list Edit/Delete Message Reply w/Quote
DJ Egg
Moderator

Registered: Jun 2000
From:

Yes, we know about it and it's already been fixed :-)

Here is the patched in_mp3.dll for 5.12
http://www.winamp.com/in_mp3.dll

*edited by deppy. this url will be removed once a new client with this fix has been released.


(place in_mp3.dll in the Winamp\Plugins folder)


There'll be a 5.13 released shortly, which will be exactly the same as 5.12 but with the patched in_mp3 included.

There'll be a separate patched in_mp3.dll included with the next public release of 5.2 beta, also hopefully today.


Note: we've already moved/deleted a few similar threads which reported this issue, but I'm going to leave this one active, seeing as there's now a patch available.


[Edit: 2nd Feb] in_mp3 now removed [/Edit]

__________________

Quick Link | Report this post to a moderator | IP: Logged

DJ Egg is offline Old Post 01-30-2006 06:33 PM
Click Here to See the Profile for DJ Egg Click here to Send DJ Egg a Private Message Find more posts by DJ Egg Add DJ Egg to your buddy list Edit/Delete Message Reply w/Quote
djsurge
Junior Member

Registered: Nov 2005
From: Chicago, IL

phew cool, thanks

Quick Link | Report this post to a moderator | IP: Logged

djsurge is offline Old Post 01-30-2006 06:36 PM
Click Here to See the Profile for djsurge Click here to Send djsurge a Private Message Find more posts by djsurge Add djsurge to your buddy list Edit/Delete Message Reply w/Quote
DJ Egg
Moderator

Registered: Jun 2000
From:

A patched 5.13 is now available:
http://forums.winamp.com/showthread.php?threadid=236744

__________________

Quick Link | Report this post to a moderator | IP: Logged

DJ Egg is offline Old Post 01-30-2006 09:31 PM
Click Here to See the Profile for DJ Egg Click here to Send DJ Egg a Private Message Find more posts by DJ Egg Add DJ Egg to your buddy list Edit/Delete Message Reply w/Quote
joopbraak
Junior Member

Registered: Jan 2006
From:

quote:
Originally posted by DJ Egg
Here is the patched in_mp3.dll for 5.12
URL submitted by user.

*edited by deppy. this url will be removed once a new client with this fix has been released.

quote:
There'll be a 5.13 released shortly, which will be exactly the same as 5.12 but with the patched in_mp3 included.
Hmm, the URL still works, and it's a different version then the releases 5.13 version.

Just to let you know, cheers.

Quick Link | Report this post to a moderator | IP: Logged

joopbraak is offline Old Post 01-31-2006 05:10 PM
Click Here to See the Profile for joopbraak Click here to Send joopbraak a Private Message Find more posts by joopbraak Add joopbraak to your buddy list Edit/Delete Message Reply w/Quote
DJ Egg
Moderator

Registered: Jun 2000
From:

Answered here. Please don't crosspost.

__________________

Quick Link | Report this post to a moderator | IP: Logged

DJ Egg is offline Old Post 01-31-2006 05:32 PM
Click Here to See the Profile for DJ Egg Click here to Send DJ Egg a Private Message Find more posts by DJ Egg Add DJ Egg to your buddy list Edit/Delete Message Reply w/Quote
All times are GMT. The time now is 07:05 PM. Post New Thread    Post A Reply
  Last Thread   Next Thread
WINAMP.COM | Forums : Powered by vBulletin version 2.3.9 WINAMP.COM | Forums > Winamp > Winamp Bug Reports > Winamp Computer Name Handling Buffer Overflow Vulnerability
Show Printable Version
 | 
Email this Page
 | 
Subscribe to this Thread

Forum Jump:
 

Forum Rules:
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is off
vB code is ON
Smilies are ON
[IMG] code is ON