Exploitation Summary
EIP tracks 2 public exploits for CVE-2006-3124. PoCs published by psylocn, Expanders.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Streamripper <= 1.61.25 on Windows. It binds a shell to port 4444 by sending a maliciously crafted HTTP response to the client.
Description
Buffer overflow in the HTTP header parsing in Streamripper before 1.61.26 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted HTTP headers.
Exploits (2)
This exploit targets a buffer overflow vulnerability in Streamripper <= 1.61.25 on Windows. It binds a shell to port 4444 by sending a maliciously crafted HTTP response to the client.
This exploit targets a buffer overflow vulnerability in Streamripper's HTTP header parsing (CVE-2006-3124). It crafts a malicious HTTP response with an oversized 'icy-br:' header to overwrite EIP and execute a reverse shell payload.