The Register® — Biting the hand that feeds IT

Winamp exploit poses hacker risk

Clear and present danger

Free whitepaper – Avoiding 7 common mistakes of IT security compliance

Hackers have created an exploit targeting a serious security vulnerability in Winamp, the popular media player. Users are strongly urged to update their software to Winamp version 5.13 to guard against attack.

A remotely exploitable buffer overflow bug in version 5.12 of Winamp creates a means for hackers to take over machines running the vulnerable software, providing they can trick users into visiting maliciously constructed websites. A malformed playlist file, containing a filename starting with an overly long computer name, would be automatically downloaded and opened in Winamp because of the security bug. Winamp version 5.12 is confirmed as vulnerable and older versions may also be susceptible to attack. ®

Free whitepaper – Certify your software integrity with Thawte code signing certificates

Don’t Miss

HandcuffsFeds: Hospital hacker's 'massive' DDoS averted

Arrest foils 'Devil's Day' scheme

thumbs down teaser 75Buggy 'smart meters' open door to power-grid botnet

Grid-burrowing worm only the beginning

MicrosoftMicrosoft knew of nasty IE bug a year before attacks

Security delayed or security denied?

BlockMaster SafeStickBlockMaster SafeStick hardware-encrypted USB drive

Review Tough enough?