7.5
CVSSv2

CVE-2005-0838

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in the XSL parser for IceCast 2.20 may allow malicious users to cause a denial of service and possibly execute arbitrary code via (1) a long test value in an xsl:when tag, (2) a long test value in an xsl:if tag, or (3) a long select value in an xsl:value-of tag.

Vulnerable Product Search on Vulmon Subscribe to Product

icecast icecast 2.20

Vendor Advisories

Debian Bug report logs - #301368 icecast2: Several vulnerabilities in Icecast2 Package: icecast2; Maintainer for icecast2 is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Source for icecast2 is src:icecast2 (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Fri, 25 Mar ...

Exploits

source: wwwsecurityfocuscom/bid/12849/info Icecast is reported prone to multiple vulnerabilities The following individual issues are reported: Icecast XSL parser is reported to be prone to a buffer overflow vulnerability This issue exists due to a lack of sufficient boundary checks performed on certain XSL tag values before copying the ...