FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2001-1083

This CVE name corresponds to:

Entered Topic
2004-02-12 icecast 1.x multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type CVE Entry
Name CVE-2001-1083

Description

Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . (dot), / (forward slash), or \ (backward slash).

References

Source Reference
BUGTRAQ 20010626 Advisory
MISC http://www.icecast.org/index.html
CONFIRM http://www.icecast.org/releases/icecast-1.3.11.tar.gz
DEBIAN DSA-089
CALDERA CSSA-2002-020.0
REDHAT RHSA-2001:105
REDHAT RHSA-2002:063
BID 2933
XF icecast-http-remote-dos(6751)