Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Carlos Barros

#22534de 53,640
10CVSS total
Vulnerabilidades · 1
PT-2004-1995
10
2004-11-19
Mpg123 · Mpg123 · CVE-2004-0982
Name of the Vulnerable Software and Affected Versions: mpg123 versions prior to 0.59s mpg123 version 0.59r Description: The issue is related to a buffer overflow in the getauthfromURL function, which could allow remote attackers or local users to execute arbitrary code. This can be achieved via an mp3 file containing a long string before the @ (at sign) in a URL. Recommendations: For mpg123 versions prior to 0.59s, update to a version that fixes the buffer overflow issue in the getauthfromURL function. For mpg123 version 0.59r, update to a version that fixes the buffer overflow issue in the getauthfromURL function.