5
CVSSv2

CVE-2014-9018

Published: 03/12/2014 Updated: 08/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Icecast prior to 2.4.1 transmits the output of the on-connect script, which might allow remote malicious users to obtain sensitive information, related to shared file descriptors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

icecast icecast

Vendor Advisories

Debian Bug report logs - #770222 icecast2: CVE-2014-9018: on-connect scripts: icecast can leak output to attentive sources Package: icecast2; Maintainer for icecast2 is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Source for icecast2 is src:icecast2 (PTS, buildd, popcon) Reported by: Sven Herzberg < ...