Winamp Ultravox Streaming Metadata Parsing Stack Buffer Overflow
Publish Date: 21 lipca 2015
Severity: : Critical
Advisory Date: 21 lipca 2015
DESCRIPTION
Multiple stack-based buffer overflows in in_mp3.dll in Winamp allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1006055