All the latest UK technology news, reviews and analysis

MP3 users warned about security threat

by Jo Ticehurst

12 Jan 2000

Be the first to comment

  • Tweet this

Internet users downloading MP3 music files have been warned about a security hole in a popular MP3 player that could let a hacker execute harmful code on their system.

According to security company Panda Software, the vulnerability in the Nullsoft Winamp 2.10 player consists of a stack overflow error that can be produced through the use of PLS extension files.

These files are used by Winamp to store playlists and are often exchanged among Internet Relay Chat (IRC) users so that they can check out tracks before receiving an MP3 file.

The overflow is produced by including more than 580 bytes after the 'FileN=' tag, which makes it possible to include more code that will be run on the user's system when the malformed PLS file is opened. This code may include any kind of destructive action.

Panda said it considered the security hole to be "serious" and that Winamp is currently one of the most widely used audio players available for Windows 95, 98 and NT platforms.

The company recommended users not to open PLS files that come in from unknown sources and to upgrade their players to the latest available version, which is currently 2.50.

Neil Barrett, technical director at security company Information Risk Management, commented: "A large percentage of security holes that have been discovered in the last decade have been buffer overflow, which is what this is. Arbitrary code is dangerous as commands execute as if they are the user."

He added; "We always tell users not to open attachments if they come from somewhere they don't recognise. The problem with MP3 is that it's not always easy to work out where it's from, and given how easy it is to spoof email you have to be doubly careful."

Nullsoft failed to respond to vnunet.com's requests for comment.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

25%

1%

11%

63%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Helpdesk/Service Analyst x3

Helpdesk/Service Analyst x 3 3 Month Contract...

2nd/3rd line Technical support EMEA (FRENCH SPEAKING)

French Technical support Specialist (2/3rd Line) CCNA...

ECM Project Manager - CMS, Document Management, Web 2.0

ECM Project Manager - CMS, "Document Management", Web...

PRESALES CONSULTANT/TECHNICAL CONSULTANT (CCNA, MCITP)

Skills - Presales, Consultant / Consultancy, Technical...

To send to more than one email address, simply separate each address with a comma.