Found this on MSNBC.
Main finder of both flaws is Foundstone.com
Read about them here:
http://www.foundstone.com/knowledge/...dvisories.html

---------------------------------------------------------------------------
Download the patch from Microsoft. This one is scary.
Microsoft has issued a fix for this vulnerability, it is available at:
http://www.microsoft.com/technet/sec...n/MS02-072.asp

Nullsoft has released fixed versions of Winamp 2.81 and Winamp 3.0 and
both are available at: http://www.winamp.com