Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attackers or local users to execute arbitrary code via an mp3 file that contains a long string before the @ (at sign) in a URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MPG123远程URL打开缓冲区溢出漏洞
Vulnerability Description
mpg123是软件开发者Michael Hipp所研发的一款使用于Linux和Unix操作系统下的MPEG音频播放器和解码库。 mpg123的getauthfromURL函数存在缓冲区溢出,远程攻击者可以利用这个漏洞构建恶意URL,诱使用户使用mpg123处理,可能以用户进程权限执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A