Vulnerabilities > Streamripper
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-11-25 | CVE-2008-4829 | Buffer Errors vulnerability in Streamripper 1.63.5 Multiple buffer overflows in lib/http.c in Streamripper 1.63.5 allow remote attackers to execute arbitrary code via (1) a long "Zwitterion v" HTTP header, related to the http_parse_sc_header function; (2) a crafted pls playlist with a long entry, related to the http_get_pls function; or (3) a crafted m3u playlist with a long File entry, related to the http_get_m3u function. | 9.3 |
2007-08-14 | CVE-2007-4337 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Streamripper Multiple buffer overflows in the httplib_parse_sc_header function in lib/http.c in Streamripper before 1.62.2 allow remote attackers to execute arbitrary code via long (1) Location and (2) Server HTTP headers, a different vulnerability than CVE-2006-3124. | 5.8 |
2006-08-26 | CVE-2006-3124 | Buffer Overflow vulnerability in Streamripper 1.61.24/1.61.25 Buffer overflow in the HTTP header parsing in Streamripper before 1.61.26 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted HTTP headers. | 7.5 |