Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 442
Alerts This Week
Warning Icon 1 442

Debian: DSA-7896-3 Urgent: PeerStream Command Injection Vulnerability

debian
Calendar Grey May 20, 2008
Scroller Debian
PeerCast encounters a vulnerability due to a buffer overflow on Debian, which can result in remote code execution. Security updates are critical.
Nico Golde discovered that PeerCast, a P2P audio and video streaming server, is vulnerable to a buffer overflow in the HTTP Basic Authentication code, allowing a remote attacker ...

Summary


For the unstable distribution (sid), this problem has been fixed in
version 0.1218+svn20080104-1.1.

We recommend that you upgrade your peercast package.

Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 4.0 alias etch

Size/MD5 checksum: 1070 10e545471f649cd37409dc9cbfd7960a
Size/MD5 checksum: 534016 d9e83aa7e66f4d3b160d7c4c8b2a3a4f
Size/MD5 checksum: 7458 c7fc173230621f05137a6420a48b3347

Architecture independent packages:

Size/MD5 checksum: 6828 ac385ad05a69ba429c2e300920ff1192

alpha architecture (DEC Alpha)

Size/M...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.