Winamp is prone to an overflow condition. The 'in_nsv' plugin fails to properly sanitize user-supplied input resulting in an integer overflow. This allows a remote attacker to cause unknown harm via vectors related to improper allocation of memory for NSV metadata.