20020604 SHOUTcast 1.8.9 bufferoverflowmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-06/0016.html CVE-2002-0907
Nullsoft SHOUTcast 1.8.9 - Remote Buffer Overflow
Record summary
CVE-2002-0907 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in SHOUTcast 1.8.9 and other versions before 1.8.12 allows a remote authenticated DJ to execute arbitrary code on the server via a long value in a header whose name begins with "icy-".
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNullsoft SHOUTcast 1.8.9 - Remote Buffer OverflowExploitDB exploitby eSDeeNot analyzed1 file
References
4shoutcast-icy-remote-bo(9251)vdb entry
http://www.iss.net/security_center/static/9251.php 4934vdb entry
http://www.securityfocus.com/bid/4934 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-0907