1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Streamripper Multiple Buffer Overflow Vulnerabilities

Report ID: SA32562
Source: Secunia
Date of Discovery: 19.11.2008
Criticality: Moderate
Affects:
Streamripper 1.x

Compromise From: From remote
Compromise Type: System access

Summary

Some vulnerabilities in Streamripper, which can be exploited by malicious people to compromise a user's system.

Detailed Description

Some vulnerabilities in Streamripper, which can be exploited by malicious people to compromise a user's system.

1) A boundary error exists within the function "http_parse_sc_header()" in lib/http.c when parsing an overly long HTTP header starting with "Zwitterion v".

2) A boundary error exists within the function "http_get_pls()" in lib/http.c when parsing a specially crafted pls playlist containing an overly long entry.

3) A boundary error exists within the function "http_get_m3u()" in lib/http.c when parsing a specially crafted m3u playlist containing an overly long "File" entry.

Successful exploitation allows the execution of arbitrary code, but requires that a user is tricked into connecting to a malicious server.

The vulnerabilities are confirmed in version 1.63.5. Other versions may also be affected.

Solution

Patches should be available soon.

CVE Reference

CVE-2008-4829