Icecast print_client() Format String Vulnerability
BID:2264
Info
Icecast print_client() Format String Vulnerability
| Bugtraq ID: | 2264 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jan 21 2001 12:00AM |
| Updated: | Jan 21 2001 12:00AM |
| Credit: | Reported to bugtraq by |CyRaX| <[email protected]> on 21 Jan 2001. |
| Vulnerable: |
Icecast Icecast 1.3.8 beta2 Icecast Icecast 1.3.7 |
| Not Vulnerable: | |
Discussion
Icecast print_client() Format String Vulnerability
Versions of icecast up to and including 1.3.8 beta2 exhibit a format string vulnerability in the print_client()function of utility.c. A malicious user can cause the *printf function to overwrite memory at possibly arbitrary addresses.
Versions of icecast up to and including 1.3.8 beta2 exhibit a format string vulnerability in the print_client()function of utility.c. A malicious user can cause the *printf function to overwrite memory at possibly arbitrary addresses.