CVE-2006-1148

Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to execute arbitrary code via an HTTP GET request with a long (1) parameter name or (2) value in a URL, which triggers the overflow in the nextCGIarg function in servhs.cpp.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:peercast:peercast:*:*:*:*:*:*:*:*
cpe:2.3:a:peercast:peercast:0.1211:*:*:*:*:*:*:*
cpe:2.3:a:peercast:peercast:0.1212:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-03-10 11:02

Updated : 2023-12-10 10:28


NVD link : CVE-2006-1148

Mitre link : CVE-2006-1148

CVE.ORG link : CVE-2006-1148


JSON object : View

Products Affected

peercast

  • peercast
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer