Re: Foundstone Research Labs Advisory - Multiple Exploitable Buffer Overflows in Winamp (fwd)

From: David Howe (DaveHowe@gmx.co.uk)
Date: 12/19/02

  • Next message: Trustix Secure Linux Advisor: "TSLSA-2002-0084 - tcpdump"
    From: "David Howe" <DaveHowe@gmx.co.uk>
    To: "Email List: BugTraq" <bugtraq@securityfocus.com>
    Date: Thu, 19 Dec 2002 17:48:46 -0000
    
    

    at Thursday, December 19, 2002 12:31 AM, Dave Ahmad
    <da@securityfocus.com> was seen to say:
    > Solution:
    > For Winamp 2.81 users
    > We recommend either upgrading to Winamp 3.0 or redownloading Winamp
    > 2.81 (which has since been fixed) from: http://www.winamp.com
    Does anyone have a more direct URL or a MD5 hash of the "safe" file? the
    current download of 2.81 is still dated Aug 21 and the current 3.0 dated
    8 Aug (on the site - haven't downloaded 3.0. but the internal date on
    2.81 is definitely the 21st)
    There is also *nothing* about this on the winamp site - its as if it
    didn't exist.



    Relevant Pages