- ------------------------------------------------------------------------Debian Security Advisory DSA-1597-2                  security@debian.org
https://www.debian.org/security/                           Devin Carraway
August 30, 2008                       https://www.debian.org/security/faq
- ------------------------------------------------------------------------Package        : mt-daapd
Vulnerability  : multiple vulnerabilities
Problem type   : remote
Debian-specific: no
CVE Id(s)      : CVE-2007-5824 CVE-2007-5825 CVE-2008-1771
Debian Bug     : 459961 476241 496217

In DSA-1597-1, an update was announced for multiple vulnerabilities in
the mt-daapd audio server.  One of the fixes introduced a regression
preventing successful authentication to the administration interface.
An updated release is available which corrects this problem.  For
reference, the original advisory text follows.

Three vulnerabilities have been discovered in the mt-daapd DAAP audio
server (also known as the Firefly Media Server).  The Common
Vulnerabilities and Exposures project identifies the following three


    Insufficient validation and bounds checking of the Authorization:
    HTTP header enables a heap buffer overflow, potentially enabling
    the execution of arbitrary code.


    Format string vulnerabilities in debug logging within the
    authentication of XML-RPC requests could enable the execution of
    arbitrary code.


    An integer overflow weakness in the handling of HTTP POST
    variables could allow a heap buffer overflow and potentially
    arbitrary code execution.

For the stable distribution (etch), these problems have been fixed in
version 0.2.4+r1376-1.1+etch2.

We recommend that you upgrade your mt-daapd package.

Debian GNU/Linux 4.0 alias etch
- -------------------------------Debian (stable)
- ---------------Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.

  These files will probably be moved into the stable distribution on
  its next update.

