Title : Streamripper HTTP Header Parsing Multiple Client-Side Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2006-3387 CVE ID : CVE-2006-3124
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-08-25
Technical Description
Multiple vulnerabilities have been identified in Streamripper, which could be exploited by remote attackers to cause a denial of service or execute arbitrary commands. These flaws are due to buffer overflow errors when processing malformed HTTP headers, which could be exploited by remote attackers to crash a vulnerable application or compromise an affected system by convincing a user to connect to a malicious server.