<?xml version="1.0" encoding="ISO-8859-1"?>
<!-- generator="HardwareAnalysis.Com" -->
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="">
        <title>Hardware Analysis - AOL Winamp Program Flaw Allows Attack</title>
        <description>Hardware Analysis Community Forums</description>
        <link>http://www.hardwareanalysis.com/content/topic/34965/</link>
        <image rdf:resource="http://media.hardwareanalysis.com/halogo.gif" />
       <dc:date>2008-05-17T13:15:14-05:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="http://www.hardwareanalysis.com/content/topic/34965/?l=1#0"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="http://media.hardwareanalysis.com/halogo.gif">
        <title>Hardware Analysis</title>
        <link>http://www.hardwareanalysis.com/content/topic/34965/</link>
        <url>http://media.hardwareanalysis.com/halogo.gif</url>
    </image>
    <item rdf:about="http://www.hardwareanalysis.com/content/topic/34965/?l=1#0">
        <dc:format>text/html</dc:format>
        <dc:date>2004-11-26T20:21:16-05:00</dc:date>
        <dc:creator>angryhippy</dc:creator>
        <title>AOL Winamp Program Flaw Allows Attack</title>
        <link>http://www.hardwareanalysis.com/content/topic/34965/?l=1#0</link>
        <description>Winamp Flaw Allows Attacks  &lt;br /&gt;
By Ryan Naraine &lt;br /&gt;
November 24, 2004 &lt;br /&gt;
Users of America Online Inc.'s Winamp media player are at risk of remote code execution attacks because of a flaw in the software, according to a warning from a security research firm. &lt;br /&gt;
&lt;br /&gt;
The flaw, which Secunia rates as &amp;quot;highly critical,&amp;quot; has been reported in Winamp versions 5.05 and 5.06. Prior versions also may be affected. &lt;br /&gt;
&lt;br /&gt;
Security-Assessment.com, which is credited with finding the vulnerability, said a malicious hacker could cause a buffer overflow in various ways, the most dangerous being through a malformed .m3u playlist file. &lt;br /&gt;
&lt;br /&gt;
&amp;quot;When hosted on a Web site, these files will be automatically downloaded and opened in Winamp without any user interaction. This is enough to cause the overflow that would allow a malicious playlist to overwrite EIP and execute arbitrary code,&amp;quot; the company said.&lt;br /&gt;
&lt;br /&gt;
The vulnerability exists due to a boundary error in the &amp;quot;IN_CDDA.dll&amp;quot; file,&amp;quot; the company said.&lt;br /&gt;
&lt;br /&gt;
Secunia recommends that users disassociate &amp;quot;.cda&amp;quot; and &amp;quot;.m3u&amp;quot; extensions from Winamp until the vendor releases a fix.&lt;br /&gt;
&lt;br /&gt;
News of the Winamp security issue comes amid reports that the last members of the original Winamp team have said goodbye to AOL. Only a few employees remain to prop up the once-ubiquitous digital audio player with minor updates, but no further improvements to Winamp are expected. &lt;br /&gt;
&lt;br /&gt;
Winamp is maintained by AOL's Nullsoft division.&lt;br /&gt;
&lt;br /&gt;
It is not the first time that security flaws have been flagged in Winamp. Earlier this year, Nullsoft rushed out a critical fix for a vulnerability found in the Winamp 3.0, 5.0 and 5.0 Pro versions.&lt;br /&gt;
&lt;br /&gt;
That flaw was detected in the Winamp Skin installer mechanism and was being exploited to automatically launch spyware applications without user consent.&lt;br /&gt;
</description>
    </item>
</rdf:RDF>
