OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
[Full-disclosure] AOL Nullsoft Winamp S3M Module "IN_MOD.DLL" Remote Heap Memory Corruption

From: Piotr Bania (bania.piotrgmail.com)
Date: Fri Apr 06 2007 - 04:47:04 CDT


AOL Nullsoft Winamp S3M Module "IN_MOD.DLL" Remote Heap Memory Corruption
by Piotr Bania <bania.piotrgmail.com>
http://www.piotrbania.com

Severity: Important - Potencial remote code execution.

Software affected: Tested on AOL Nullsoft Winamp v5.33 (x86) Feb 13
2007 (on Windows XP SP1/SP2).

Orginal url:
http://www.piotrbania.com/all/adv/nullsoft-winamp-s3m_module-in_mod-adv.txt

best regards,
pb

--
--------------------------------------------------------------------
Piotr Bania - <bania.piotrgmail.com> - 0xCD, 0x19
Fingerprint: 413E 51C7 912E 3D4E A62A BFA4 1FF6 689F BE43 AC33
http://www.piotrbania.com - Key ID: 0xBE43AC33
--------------------------------------------------------------------

               - "The more I learn about men, the more I love dogs."

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/