5.8
CVSSv2

CVE-2007-4337

Published: 14/08/2007 Updated: 15/10/2018
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Multiple buffer overflows in the httplib_parse_sc_header function in lib/http.c in Streamripper prior to 1.62.2 allow remote malicious users to execute arbitrary code via long (1) Location and (2) Server HTTP headers, a different vulnerability than CVE-2006-3124.

Vulnerable Product Search on Vulmon Subscribe to Product

streamripper streamripper 1.61.1

streamripper streamripper 1.61.17

streamripper streamripper 1.61.24

streamripper streamripper 1.62

streamripper streamripper 1.61.25

streamripper streamripper 1.61.26

Vendor Advisories

Multiple buffer overflows involving HTTP header and playlist parsing have been discovered in streamripper (CVE-2007-4337, CVE-2008-4829) For the stable distribution (etch), these problems have been fixed in version 16127-1+etch1 For the unstable distribution (sid) and the testing distribution (lenny), these problems have been fixed in versi ...