Required CVE Record Information
Description
Stack-based buffer overflow in the HTTP::getAuthUserPass function (core/common/http.cpp) in Peercast 0.1218 and gnome-peercast allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Basic Authentication string with a long (1) username or (2) password.
References 14 Total
- security.gentoo.org: GLSA-200807-11 vendor-advisory
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=478680
- secunia.com: 30020 third-party-advisory
- debian.org: DSA-1583 vendor-advisory
- secunia.com: 30325 third-party-advisory
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=478573
- secunia.com: 29962 third-party-advisory
- exchange.xforce.ibmcloud.com: peercast-httpgetauthuserpass-bo(42092) vdb-entry
- debian.org: DSA-1582 vendor-advisory
- vupen.com: ADV-2008-1410 vdb-entry
- secunia.com: 30320 third-party-advisory
- secunia.com: 31182 third-party-advisory
- vupen.com: ADV-2008-1409 vdb-entry
- securityfocus.com: 28986 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 14 Total
- security.gentoo.org: GLSA-200807-11 vendor-advisoryx_transferred
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=478680 x_transferred
- secunia.com: 30020 third-party-advisoryx_transferred
- debian.org: DSA-1583 vendor-advisoryx_transferred
- secunia.com: 30325 third-party-advisoryx_transferred
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=478573 x_transferred
- secunia.com: 29962 third-party-advisoryx_transferred
- exchange.xforce.ibmcloud.com: peercast-httpgetauthuserpass-bo(42092) vdb-entryx_transferred
- debian.org: DSA-1582 vendor-advisoryx_transferred
- vupen.com: ADV-2008-1410 vdb-entryx_transferred
- secunia.com: 30320 third-party-advisoryx_transferred
- secunia.com: 31182 third-party-advisoryx_transferred
- vupen.com: ADV-2008-1409 vdb-entryx_transferred
- securityfocus.com: 28986 vdb-entryx_transferred