Foo - LOL... WinAmp users, prepare to update again

Bikeforums.net is a forum about nothing but bikes. Our community can help you find information about hard-to-find and localized information like bicycle tours, specialties like where in your area to have your recumbent bike serviced, or what are the best bicycle tires and seats for the activities you use your bike for.




mechBgon
02-14-06, 01:41 AM
Looks like another exploitable WinAmp vulnerability has come to light:

http://vil.nai.com/vil/content/v_138527.htm



This generic detection covers an exploit targeting WinAmp 5.13. The effect of this trojan could vary from memory corruption to allowing remote code execution via a specially crafted play list (.m3u or .pls) file.

Such exploit files could be executed with little user intervention (such as visiting a website that hosted malicious files), and the end result could be the silent installation of any number of viruses, trojans, and potentially unwanted programs.


Here's another one to be aware of: FireFox and Mozilla need updating if you're using anything but the latest version. http://vil.nai.com/vil/content/v_138502.htm



This is a generic detection for a trojan that targets a heap buffer overflow in the Firefox web browser versions prior to 1.5.0.1 via a JavaScript method. It may also affect Mozilla Suite 1.7.12, Mozilla SeaMonkey < 1.0 and Mozilla Thunderbird 1.5 or older when JavaScript is enabled. Remote code execution is possible. Such exploit files could be executed with little user intervention - such as visiting a website that hosted malicious files, and the end result varies from memory corruption to the silent installation of any number of viruses, trojans and potentially unwanted programs.



We now return you to your regularly-scheduled Foo :)


blue_neon
02-14-06, 03:15 AM
What WinAMP MechBgon...if it has anything to do with Windows 2000 i'm going to sue you ;)

TexasGuy
02-14-06, 07:34 AM
Mozilla/firefox users should be checking for updates at least once a month. As that has been the common release pattern for nearly a year now.


mechBgon
02-14-06, 08:43 PM
What WinAMP MechBgon...if it has anything to do with Windows 2000 i'm going to sue you ;)I'm not sure what you're insinuating, but whatever it is, I'm sure I'm completely innocent of it :) Or else I was framed! :D

*makes sure not to open any legal documents postmarked in Australia*

explody pup
02-14-06, 09:19 PM
I'm either too lazy or too stupid to update my software and have yet to catch any spyware (at least what shows up on Spybot, which I actually do update) or viruses (AVG free, which updates itself). Then again, I don't stream anything or go to anything else than the dozen or so sites I frequent. Or maybe I'm just lucky.