Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-4694

EPSS 40.70% · P97
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-4694

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a package with a long Skin directory name. NOTE: a second buffer overflow involving a long GUI Search field to ml_local.dll was also reported. However, since it is only exploitable by the user of the application, this issue would not cross privilege boundaries unless Winamp is running under a highly restricted environment such as a kiosk.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Nullsoft Winamp 多个基于栈的缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Nullsoft Winamp是美国Nullsoft公司开发的一套免费的媒体播放器软件,现为美国在线(AOL)旗下产品之一。该软件支持多种媒体格式、皮肤更换和插件扩展等,同时也具备最基本的播放列表和媒体库功能。 Winamp 5.63及之前版本的gen_jumpex.dll文件中存在基于栈的缓冲区溢出漏洞。远程攻击者可借助带有长Skin目录名称的数据包利用该漏洞造成拒绝服务(崩溃),也可能执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-4694

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-4694

登录查看更多情报信息。

Same Patch Batch · n/a · 2014-04-16 · 97 CVEs total

CVE-2014-2463Oracle Secure Global Desktop 安全漏洞
CVE-2014-2459Oracle Transportation Management 任意代码执行漏洞
CVE-2014-2457Oracle Supply Chain Oracle Agile Product Lifecycle 安全漏洞
CVE-2014-2452Oracle Fusion Middleware Oracle Access Manager 拒绝服务漏洞
CVE-2014-2451Oracle MySQL Server 拒绝服务漏洞
CVE-2014-2450Oracle MySQL Server 拒绝服务漏洞
CVE-2014-2449Oracle PeopleSoft Enterprise HRMS Talent Acquisition Manager 安全漏洞
CVE-2014-2448Oracle PeopleSoft Enterprise PT PeopleTools 安全漏洞
CVE-2014-2453Oracle Hyperion 安全漏洞
CVE-2014-2461Oracle Transportation Management 安全漏洞
CVE-2014-2460Oracle Transportation Management 安全漏洞
CVE-2014-2464Oracle Agile PLM Framework 安全漏洞
CVE-2014-2465Oracle Agile PLM Framework 安全漏洞
CVE-2014-2466Oracle Agile PLM Framework 安全漏洞
CVE-2014-2467Oracle Agile PLM Framework 安全漏洞
CVE-2014-2468Oracle Siebel CRM 安全漏洞
CVE-2014-2470Oracle WebLogic Server 任意代码执行漏洞
CVE-2014-2471Oracle iLearning 安全漏洞
CVE-2014-0451Oracle Java SE和Java SE Embedded 安全漏洞
CVE-2014-0452Java SE和Java SE Embedded 安全漏洞

Showing top 20 of 97 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-4694

No comments yet


Leave a comment