Streamerp2p Forum

Streamer P2P Radio Support ForumStreamer Mainpage www.streamerp2p.com
It is currently Fri May 24, 2013 1:48 am

All times are UTC - 6 hours




Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 3 posts ] 
Author Message
 Post subject: Oddsock Song Requester Has Buffer Overflows
PostPosted: Sun Nov 09, 2003 9:27 pm 
Offline
Streamer Nerd
Streamer Nerd
User avatar

Joined: Sun Oct 10, 2004 6:00 pm
Posts: 164
Location: Germany - Hessen
Oddsock Song Requester Playlist Generator for Winamp Has Buffer Overflows Let Remote Users Crash the Winamp Media Server

SecurityTracker Alert ID: 1004787
CVE Reference: GENERIC-MAP-NOMATCH (Links to External Site)
Date: Jul 17 2002

Impact: Denial of service via network

Exploit Included: Yes

Version(s): 2.1

Description: Buffer overflow vulnerabilities were reported in the Oddsock Song Requester Winamp plugin. A remote user can cause the Winamp media server to crash.

Outpost24 Security reported several buffer overflow vulnerabilities that allow a remote user to cause denial of service conditions. A remote user can cause the Winamp media service to crash, requiring a restart to return to normal operations.

The vulnerability reportedly exists in the parsing of long names or character strings. Successful exploitation may cause Winamp to shut down. Two demonstration exploit URLs are provided:

http://<musicserver>/request.cgi?listpos=9999999999999999999999999999
(9x256)

http://<musicserver>/request.cgi?psearch=999 999999999999999999999999999
(9x254)

Both URLs will cause Winamp to crash, but the second will cause Winamp to crash without generating any error messages.

According to the report, all the Song Requester CGI files are vulnerable, including the 'admin.cgi' script.

The vendor has reportedly been notified.

See the original Outpost24 advisory at:

http://www.outpost24.com/ops/news/260&XVCLANGUAGEID=

Impact: A remote user can cause the Winamp server to crash, requiring a manual restart to return to normal operations.

Solution: No solution was available at the time of this entry.

Vendor URL: www.oddsock.org/tools/gen_songrequester/ (Links to External Site)

Cause: Boundary error

Reported By: Lucas Lundgren <ll@outpost24.com>

Message History: None.


http://www.securitytracker.com/alerts/2 ... 04787.html

I hope it is fixed in the current one..


Top
 Profile  
 
 Post subject:
PostPosted: Sun Nov 09, 2003 11:12 pm 
Offline
Site Admin
User avatar

Joined: Sun Oct 10, 2004 6:00 pm
Posts: 572
Location: Panama
Telling the world about this bug rather than just telling Oddsock is rather stupid in this case. He is just a single coder making free tools, not a big corporation trying to pretend his code is perfect.


Top
 Profile  
 
 Post subject:
PostPosted: Mon Nov 10, 2003 12:41 am 
Offline
Streamer Nerd
Streamer Nerd
User avatar

Joined: Sun Oct 10, 2004 6:00 pm
Posts: 164
Location: Germany - Hessen
You are right!

- the posting I found is from July 2002 so I hope it is already known to him and fixed.

If someone using a old version of songrequester wonders why it crashes... - a update to the newer version is maybe not a bad idea... :roll:


Top
 Profile  
 
Display posts from previous:  Sort by  
Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 3 posts ] 

All times are UTC - 6 hours


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group