CVE-2006-1148

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
10/03/2006
Last modified:
03/04/2025

Description

Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to execute arbitrary code via an HTTP GET request with a long (1) parameter name or (2) value in a URL, which triggers the overflow in the nextCGIarg function in servhs.cpp.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:peercast:peercast:*:*:*:*:*:*:*:* 0.1215 (including)
cpe:2.3:a:peercast:peercast:0.1211:*:*:*:*:*:*:*
cpe:2.3:a:peercast:peercast:0.1212:*:*:*:*:*:*:*