Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0982
Description:Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attackers or local users to execute arbitrary code via an mp3 file that contains a long string before the @ (at sign) in a URL.
Test IDs: 1.3.6.1.4.1.25623.1.0.54718   1.3.6.1.4.1.25623.1.0.53270   1.3.6.1.4.1.25623.1.0.52330  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0982
BugTraq ID: 11468
http://www.securityfocus.com/bid/11468
Bugtraq: 20041019 mpg123 "getauthfromurl" buffer overflow (Google Search)
http://marc.info/?l=bugtraq&m=109834486312407&w=2
Debian Security Information: DSA-578 (Google Search)
http://www.debian.org/security/2004/dsa-578
http://www.gentoo.org/security/en/glsa/glsa-200410-27.xml
http://www.barrossecurity.com/advisories/mpg123_getauthfromurl_bof_advisory.txt
http://www.osvdb.org/11023
http://securitytracker.com/id?1011832
http://secunia.com/advisories/12908
XForce ISS Database: mpg123-getauthfromurl-bo(17574)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17574




© 1998-2025 E-Soft Inc. All rights reserved.