Winamp Ultravox Streaming Metadata Parsing Stack Buffer Overflow
Severity: CRITICAL
Advisory Date: JUL 21, 2015
DESCRIPTION
Multiple stack-based buffer overflows in in_mp3.dll in Winamp allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles.
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1006055