Vulnerability Description
Buffer overflows in (1) Icecast before 1.3.9 and (2) libshout before 1.0.4 allow remote attackers to cause a denial of service (crash) and execute arbitrary code.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Icecast | Icecast | <= 1.3.9 |
| Libshout | Libshout | <= 1.0.4 |
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000387
- http://marc.info/?l=bugtraq&m=98438880622976&w=2
- http://www.redhat.com/support/errata/RHSA-2002-063.htmlVendor Advisory
- http://www.xiph.org/archives/icecast/0074.htmlVendor Advisory
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000387
- http://marc.info/?l=bugtraq&m=98438880622976&w=2
- http://www.redhat.com/support/errata/RHSA-2002-063.htmlVendor Advisory
- http://www.xiph.org/archives/icecast/0074.htmlVendor Advisory
FAQ
What is CVE-2001-1229?
CVE-2001-1229 is a vulnerability with a CVSS score of 7.5 (HIGH). Buffer overflows in (1) Icecast before 1.3.9 and (2) libshout before 1.0.4 allow remote attackers to cause a denial of service (crash) and execute arbitrary code.
How severe is CVE-2001-1229?
CVE-2001-1229 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-1229?
Check the references section above for vendor advisories and patch information. Affected products include: Icecast Icecast, Libshout Libshout.