Vulnerabilities > Streamripper

DATE CVE VULNERABILITY TITLE RISK
2008-11-25 CVE-2008-4829 Buffer Errors vulnerability in Streamripper 1.63.5
Multiple buffer overflows in lib/http.c in Streamripper 1.63.5 allow remote attackers to execute arbitrary code via (1) a long "Zwitterion v" HTTP header, related to the http_parse_sc_header function; (2) a crafted pls playlist with a long entry, related to the http_get_pls function; or (3) a crafted m3u playlist with a long File entry, related to the http_get_m3u function.
network
streamripper CWE-119
critical
9.3
2007-08-14 CVE-2007-4337 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Streamripper
Multiple buffer overflows in the httplib_parse_sc_header function in lib/http.c in Streamripper before 1.62.2 allow remote attackers to execute arbitrary code via long (1) Location and (2) Server HTTP headers, a different vulnerability than CVE-2006-3124.
5.8
2006-08-26 CVE-2006-3124 Buffer Overflow vulnerability in Streamripper 1.61.24/1.61.25
Buffer overflow in the HTTP header parsing in Streamripper before 1.61.26 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted HTTP headers.
network
low complexity
streamripper
7.5