CVE-2002-0177 – Icecast 1.x - AVLLib Buffer Overflow
https://notcve.org/view.php?id=CVE-2002-0177
Buffer overflows in icecast 1.3.11 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request from an MP3 client. Desbordamientos de buffer en icecast 1.3.11 y anteriores permite a atacantes remotos ejecutar código arbitrario mediante una petición HTTP GET larga de un cliente MP3. • https://www.exploit-db.com/exploits/21363 http://marc.info/?l=bugtraq&m=101780890326179&w=2 http://marc.info/?l=bugtraq&m=101786838300906&w=2 http://marc.info/?l=bugtraq&m=101793704306035&w=2 http://www.kb.cert.org/vuls/id/596387 http://www.securityfocus.com/bid/4415 http://www.xiph.org/archives/icecast/2616.html •
CVE-2001-0784 – Icecast 1.1.x/1.3.x - Directory Traversal
https://notcve.org/view.php?id=CVE-2001-0784
Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack using encoded URL characters. Vulnerabilidad en el atravesamiento de directorios de Icecast 1.3.10 y anteriores permite a atacantes remotos leer ficheros arbitrarios mediante un ataque modificado .. (punto punto) usando caractéres URL codificados. • https://www.exploit-db.com/exploits/20972 http://archives.neohapsis.com/archives/bugtraq/2001-06/0353.html http://www.debian.org/security/2001/dsa-089 http://www.osvdb.org/1883 http://www.redhat.com/support/errata/RHSA-2001-105.html http://www.redhat.com/support/errata/RHSA-2002-063.html http://www.securityfocus.com/bid/2932 https://exchange.xforce.ibmcloud.com/vulnerabilities/6752 •
CVE-2001-1083 – Icecast 1.1.x/1.3.x - Slash File Name Denial of Service
https://notcve.org/view.php?id=CVE-2001-1083
Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . (dot), / (forward slash), or \ (backward slash). • https://www.exploit-db.com/exploits/20973 ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-020.0.txt http://www.debian.org/security/2001/dsa-089 http://www.icecast.org/index.html http://www.icecast.org/releases/icecast-1.3.11.tar.gz http://www.redhat.com/support/errata/RHSA-2001-105.html http://www.redhat.com/support/errata/RHSA-2002-063.html http://www.securityfocus.com/archive/1/193516 http://www.securityfocus.com/bid/2933 https://exchange.xforce •
CVE-2001-0197 – Icecast 1.3.7/1.3.8 - 'print_client()' Format String
https://notcve.org/view.php?id=CVE-2001-0197
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands. • https://www.exploit-db.com/exploits/20582 http://archives.neohapsis.com/archives/bugtraq/2001-01/0348.html http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000374 http://www.redhat.com/support/errata/RHSA-2001-004.html http://www.securityfocus.com/bid/2264 https://exchange.xforce.ibmcloud.com/vulnerabilities/5978 •
CVE-2001-1230
https://notcve.org/view.php?id=CVE-2001-1230
Buffer overflows in Icecast before 1.3.10 allow remote attackers to cause a denial of service (crash) and execute arbitrary code. • http://marc.info/?l=bugtraq&m=98455723123298&w=2 http://www.debian.org/security/2001/dsa-089 http://www.redhat.com/support/errata/RHSA-2002-063.html •