Multiple buffer overflows in lib/http.c in Streamripper 1.63.5 allow remote attackers to execute arbitrary code via (1) a long "Zwitterion v" HTTP header, related to the http_parse_sc_header function; (2) a crafted pls playlist with a long entry, related to the http_get_pls function; or (3) a crafted m3u playlist with a long File entry, related to the http_get_m3u function.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: flexera

Published: 2008-11-25T23:00:00

Updated: 2024-08-07T10:31:27.909Z

Reserved: 2008-10-31T00:00:00

Link: CVE-2008-4829

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2008-11-25T23:30:00.500

Modified: 2018-10-11T20:52:58.200

Link: CVE-2008-4829

cve-icon Redhat

No data.