Vulnerability Name: | CVE-2004-1561 (CCN-17538) | ||||||||
Assigned: | 2004-09-29 | ||||||||
Published: | 2004-09-29 | ||||||||
Updated: | 2017-07-11 | ||||||||
Summary: | Buffer overflow in Icecast 2.0.1 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a large number of headers. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 6.2 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:F/RL:OF/RC:C)
6.2 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:F/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: CCN Type: Luigi Auriemma Advisory, 28 September 2004 Code execution in Icecast 2.0.1 Source: MISC Type: Exploit, Vendor Advisory http://aluigi.altervista.org/adv/iceexec-adv.txt Source: MITRE Type: CNA CVE-2004-1561 Source: BUGTRAQ Type: UNKNOWN 20040928 Code execution in Icecast 2.0.1 Source: BUGTRAQ Type: UNKNOWN 20041002 Re:2. Code execution in Icecast 2.0.1(exploit with shellcode) Source: CCN Type: SA12666 Icecast Server HTTP Headers Buffer Overflow Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory 12666 Source: CCN Type: SECTRACK ID: 1011439 Icecast Buffer Overflow in Processing HTTP Headers Lets Remote Users Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1011439 Source: CCN Type: Icecast Web site Icecast Source: OSVDB Type: UNKNOWN 10446 Source: CCN Type: OSVDB ID: 10406 Icecast Server Multiple HTTP Headers Overflow Source: CCN Type: OSVDB ID: 10446 Icecast HTTP Header Processing Remote Overflow Source: CCN Type: SecuriTeam Security Holes & Exploits 4/10/2004 ICECast Remote Code Execution Source: MISC Type: Exploit, Vendor Advisory http://www.securiteam.com/exploits/6X00315BFM.html Source: BID Type: Exploit, Patch 11271 Source: CCN Type: BID-11271 Icecast Server HTTP Header Buffer Overflow Vulnerability Source: XF Type: UNKNOWN icecast-http-bo(17538) Source: XF Type: UNKNOWN icecast-http-bo(17538) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |