20010121 [pkc] format bugs in icecast 1.3.8b2 and priormailing list
http://archives.neohapsis.com/archives/bugtraq/2001-01/0348.html CVE-2001-0197
Icecast 1.3.7/1.3.8 - 'print_client()' Format String
Record summary
CVE-2001-0197 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBIcecast 1.3.7/1.3.8 - 'print_client()' Format StringExploitDB exploitby CyRaXNot analyzed1 file
References
6CLA-2001:374Vendor advisory
http://distro.conectiva.com.br/atualizacoes?id=a&anuncio=000374 RHSA-2001:004Vendor advisory
http://www.redhat.com/support/errata/RHSA-2001-004.html 2264vdb entry
http://www.securityfocus.com/bid/2264 icecast-format-string(5978)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5978 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0197