CVE-2006-0051

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/04/2006
Last modified:
03/04/2025

Description

Buffer overflow in playlistimport.cpp in Kaffeine Player 0.4.2 through 0.7.1 allows user-assisted attackers to execute arbitrary code via long HTTP request headers when Kaffeine is "fetching remote playlists", which triggers the overflow in the http_peek function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kaffeine:kaffeine_player:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:kaffeine:kaffeine_player:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:kaffeine:kaffeine_player:0.4.3b:*:*:*:*:*:*:*
cpe:2.3:a:kaffeine:kaffeine_player:0.5_rc1:*:*:*:*:*:*:*
cpe:2.3:a:kaffeine:kaffeine_player:0.7.1:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools