MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
BID:11121
Info
MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
| Bugtraq ID: | 11121 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2004-0805 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 07 2004 12:00AM |
| Updated: | Jul 12 2009 07:06AM |
| Credit: | Discovery of this issue is credited to "Davide Del Vecchio" <[email protected]>. |
| Vulnerable: |
mpg123 mpg123 0.59 s mpg123 mpg123 0.59 r Mandriva Linux Mandrake 10.0 AMD64 Mandriva Linux Mandrake 10.0 Mandriva Linux Mandrake 9.2 amd64 Mandriva Linux Mandrake 9.2 MandrakeSoft Corporate Server 2.1 x86_64 MandrakeSoft Corporate Server 2.1 |
| Not Vulnerable: | |
Discussion
MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
Reportedly mpg123 is affected by a remote stereo boundary buffer overflow vulnerability. This issue is due to a failure of the application to properly validate user-supplied string sizes prior to copying them into process buffers.
This issue will allow a malicious user to manipulate process memory ultimately leading to arbitrary code execution in the context of the user that started the vulnerable application.
Reportedly mpg123 is affected by a remote stereo boundary buffer overflow vulnerability. This issue is due to a failure of the application to properly validate user-supplied string sizes prior to copying them into process buffers.
This issue will allow a malicious user to manipulate process memory ultimately leading to arbitrary code execution in the context of the user that started the vulnerable application.
Exploit / POC
MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
Solution:
Gentoo has released updates to this issue that may be applied with the following commands:
emerge sync
emerge -pv ">=media-sound/mpg123-0.59s-r4"
emerge ">=media-sound/mpg123-0.59s-r4"
Mandrake Linux has released advisory MDKSA-2004:100 along with fixes to address this issue. Please see the referenced advisory for further information.
Debian has released advisory DSA 564-1 to address this issue. Please see the attached advisory for information on obtaining and applying fixes.
mpg123 mpg123 0.59 r
Solution:
Gentoo has released updates to this issue that may be applied with the following commands:
emerge sync
emerge -pv ">=media-sound/mpg123-0.59s-r4"
emerge ">=media-sound/mpg123-0.59s-r4"
Mandrake Linux has released advisory MDKSA-2004:100 along with fixes to address this issue. Please see the referenced advisory for further information.
Debian has released advisory DSA 564-1 to address this issue. Please see the attached advisory for information on obtaining and applying fixes.
mpg123 mpg123 0.59 r
-
Debian mpg123-esd_0.59r-13woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123-esd_0 .59r-13woody3_i386.deb -
Debian mpg123-esd_0.59r-13woody3_powerpc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123-esd_0 .59r-13woody3_powerpc.deb -
Debian mpg123-nas_0.59r-13woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123-nas_0 .59r-13woody3_i386.deb -
Debian mpg123-oss-3dnow_0.59r-13woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123-oss-3 dnow_0.59r-13woody3_i386.deb -
Debian mpg123-oss-i486_0.59r-13woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123-oss-i 486_0.59r-13woody3_i386.deb -
Debian mpg123_0.59r-13woody3_alpha.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_alpha.deb -
Debian mpg123_0.59r-13woody3_arm.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_arm.deb -
Debian mpg123_0.59r-13woody3_hppa.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_hppa.deb -
Debian mpg123_0.59r-13woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_i386.deb -
Debian mpg123_0.59r-13woody3_m68k.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_m68k.deb -
Debian mpg123_0.59r-13woody3_powerpc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_powerpc.deb -
Debian mpg123_0.59r-13woody3_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/non-free/m/mpg123/mpg123_0.59r -13woody3_sparc.deb -
Mandrake mpg123-0.59r-21.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mpg123-0.59r-21.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mpg123-0.59r-21.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mpg123-0.59r-21.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mpg123-0.59r-21.1.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mpg123-0.59r-21.1.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/x86_64
http://www.mandrakesecure.net/en/ftp.php
References
MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability
References:
References:
- mpg123 Home Page (mpg123)
- mpg123 buffer overflow vulnerability ("Davide Del Vecchio"
)