Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflows in icecast 1.3.11 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request from an MP3 client.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Icecast AVLLib存在远程缓冲区溢出漏洞
Vulnerability Description
Icecast是一款免费开放源代码音频流服务程序,可使用在Unix、Linux和Microsoft Windows操作系统下。 Icecast没有对客户端发送数据进行充分的边界检查,可导致远程用户产生缓冲溢出而以root的权限执行任意代码。 问题存在于client_login函数中,client_login()接收mp3客户端提供的GET %s HTTP/1.0字符串,攻击者可以构造超长的字符串提交给此函数产生缓冲区溢出,导致攻击者可以以root用户的权限在服务器上执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A