Vulnerabilities (CVE)

Filtered by vendor Nullsoft Subscribe
Filtered by product Winamp
Total 62 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1396 1 Nullsoft 1 Winamp 2025-04-03 2.6 LOW N/A
Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file.
CVE-2005-2310 1 Nullsoft 1 Winamp 2025-04-03 9.3 HIGH N/A
Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file with a long ID3v2 tag such as (1) ARTIST or (2) TITLE.