BetaONE will rise again!


Reply
  #1  
Old 26th Aug 04, 11:12 PM
Alpine's Avatar
Alpine Alpine is offline
Retired Crew
 
Join Date: Feb 2002
Location: Run Forest, RUN!!
Posts: 3,601
Alpine is on a distinguished road
Send a message via ICQ to Alpine Send a message via AIM to Alpine
In brief A serious security flaw in NullSoft's popular W|namp player opens the door for crackers to seize control of vulnerable systems.
The problem stems from a flaw in how the player processes Winamp skin zip files. This flaw means WinAmp users induced to visit a maliciously constructed website could find their PCs rooted. The vulnerability has been confirmed on a fully patched system with WinAmp 5.04 using Internet Explorer 6.0 on Microsoft Windows XP SP1. WinAmp 3.x users are also potentially in peril. And that's not the worst of it. The bug, reported by the K-OTik.COM Security Survey Team, is reportedly being actively exploited in the wild.

NullSoft is yet to release a patch. Security firm Secunia describes the flaw as "extremely critical". Pending the availability of a fix, Secunia
advises WinAmp users to use an alternative product.



Source:

The REG!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 07:21 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.