Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-1396 | First vendor Publication | 2004-12-31 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:H/Au:N/C:N/I:N/A:P) | |||
---|---|---|---|
Cvss Base Score | 2.6 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | High |
Cvss Expoit Score | 4.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1396 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
12491 | Winamp Large nsv / nsa File DoS winamp contains a flaw that may allow a remote denial of service. The issue is triggered when a remote attacker creates a specially crafted file with size of 1mb and names it with either .nsv or .nsa file extension, which will consume all cpu resource if the file is openned by winamp, resulting in loss of availability. |
12490 | Winamp mp4 Tagging System DoS NullSoft Winamp contains a flaw that may allow a remote denial of service. The issue is triggered when an .mp4 or .m4a file containing tagging information is loaded, and will result in loss of availability for the application. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2004-12-14 | Name : The remote host is vulnerable to denial of service attacks. File : winamp_mp4_dos.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:38 |
|
2024-11-28 12:06:20 |
|
2021-05-04 12:02:30 |
|
2021-04-22 01:02:41 |
|
2020-05-23 00:16:00 |
|
2017-07-11 12:01:36 |
|
2016-10-18 12:01:26 |
|
2014-02-17 10:28:45 |
|
2013-05-11 11:44:59 |
|