peter bassill · operator
$ cve CVE-2014-3442 JSON

CVE-2014-3442 EXPLOIT

4.3
MEDIUM · CVSS 2.0 · EPSS 2.8% (pctl 86)

Patch early

A public exploit exists.

Description

Winamp 5.666 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) via a malformed .FLV file, related to f263.w5s.

Scoring

CVSS4.3 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
EPSS2.79% — more likely to be exploited than 86% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2014-05-23
Last modified2026-06-17

Affected (1)

VendorProduct
nullsoftwinamp

Public exploits

SourceTitleDate
exploit-dbWinamp - '.flv' File Processing Memory Corruption2014-05-16

References

→ the Explorer  ·  watch your stack  ·  NVD