| | ISS X-Force Database: peercast-url-bo(25113): Peercast procConnectArgs function buffer overflow |
 | | Peercast versions 0.1215 and prior are vulnerable to a stack-based buffer overflow, caused by improper bounds checking of the user supplied input by the procConnectArgs function in servmgr.cpp. |
 | | Upgrade to the latest version of Peercast (0.1217 or later), available from the Peercast Web site. |
 | | CVE-2006-1148: Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to execute arbitrary code via an HTTP GET request with a long (1) parameter name or (2) value in a URL, which triggers the overflow in the nextCGIarg function in servhs.cpp. |
| xforce.iss.net /xforce/xfdb/25113 (338 words) |