← Vulnerability feed

Vulnerability record · CVE-2009-0186 · published 5 March 2009

CVE-2009-0186: Nullsoft winamp vulnerability

Nullsoft · Winamp

Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.

9.3 CVSS 2.0 High EPSS 3.6% · top 10.9% CWE-189 · CWE-189
9.3CVSS 2.0 base score
3.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
40References
16 Jun 2026Last modified by NVD

Description

Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00003.html
http://secunia.com/advisories/33980 Vendor Advisory
http://secunia.com/advisories/33981 Vendor Advisory
http://secunia.com/advisories/34316
http://secunia.com/advisories/34526
http://secunia.com/advisories/34642
http://secunia.com/advisories/34791
http://secunia.com/secunia_research/2009-7/ Vendor Advisory
http://secunia.com/secunia_research/2009-8/ Vendor Advisory
http://security.gentoo.org/glsa/glsa-200904-16.xml
http://www.debian.org/security/2009/dsa-1742
http://www.mega-nerd.com/libsndfile/NEWS
http://www.securityfocus.com/archive/1/501399/100/0/threaded
http://www.securityfocus.com/archive/1/501413/100/0/threaded
http://www.securityfocus.com/bid/33963
http://www.securitytracker.com/id?1021784
http://www.ubuntu.com/usn/USN-749-1
http://www.vupen.com/english/advisories/2009/0584 Vendor Advisory
http://www.vupen.com/english/advisories/2009/0585 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/49038
http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00003.html
http://secunia.com/advisories/33980 Vendor Advisory
http://secunia.com/advisories/33981 Vendor Advisory
http://secunia.com/advisories/34316
http://secunia.com/advisories/34526
http://secunia.com/advisories/34642
http://secunia.com/advisories/34791
http://secunia.com/secunia_research/2009-7/ Vendor Advisory
http://secunia.com/secunia_research/2009-8/ Vendor Advisory
http://security.gentoo.org/glsa/glsa-200904-16.xml
http://www.debian.org/security/2009/dsa-1742
http://www.mega-nerd.com/libsndfile/NEWS
http://www.securityfocus.com/archive/1/501399/100/0/threaded
http://www.securityfocus.com/archive/1/501413/100/0/threaded
http://www.securityfocus.com/bid/33963
http://www.securitytracker.com/id?1021784
http://www.ubuntu.com/usn/USN-749-1
http://www.vupen.com/english/advisories/2009/0584 Vendor Advisory
http://www.vupen.com/english/advisories/2009/0585 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/49038

Track CVE-2009-0186 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2011-4857Nullsoft winamp memory buffer overflow vulnerabilityHeap-based buffer overflow in the in_mod.dll plugin in Winamp before 5.623 allows remote attackers to execute arbitrary code via crafted song message…EPSS 4.7%10.0CVE-2009-0263Nullsoft winamp memory buffer overflow vulnerabilityMultiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1)…EPSS 17%10.0CVE-2004-1119Nullsoft winamp vulnerabilityStack-based buffer overflow in IN_CDDA.dll in Winamp 5.05, and possibly other versions including 5.06, allows remote attackers to execute arbitrary c…EPSS 17%9.3CVE-2015-7805Opensuse memory buffer overflow vulnerabilityHeap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF f…EPSS 13%9.3CVE-2011-3834Nullsoft winamp vulnerabilityMultiple integer overflows in the in_avi.dll plugin in Winamp before 5.623 allow remote attackers to execute arbitrary code via an AVI file with a cr…EPSS 5.1%9.3CVE-2010-4372Nullsoft winamp vulnerabilityInteger overflow in the in_nsv plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to improper allo…EPSS 2.8%9.3CVE-2010-4370Nullsoft winamp vulnerabilityMultiple integer overflows in the in_midi plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted MIDI file that t…EPSS 5.1%9.3CVE-2010-4371Nullsoft winamp memory buffer overflow vulnerabilityBuffer overflow in the in_mod plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to the comment bo…EPSS 6.1%

Source: NIST National Vulnerability Database (record CVE-2009-0186), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.