oval:org.mitre.oval:def:8291

Definition Id: oval:org.mitre.oval:def:8291
 
Oval ID: oval:org.mitre.oval:def:8291
Title: DSA-1597 mt-daapd -- multiple vulnerabilities
Description: Three vulnerabilities have been discovered in the mt-daapd DAAP audio server (also known as the Firefly Media Server). The Common Vulnerabilities and Exposures project identifies the following three problems: Insufficient validation and bounds checking of the Authorization: HTTP header enables a heap buffer overflow, potentially enabling the execution of arbitrary code. Format string vulnerabilities in debug logging within the authentication of XML-RPC requests could enable the execution of arbitrary code. An integer overflow weakness in the handling of HTTP POST variables could allow a heap buffer overflow and potentially arbitrary code execution.
Family: unix Class: patch
Reference(s): DSA-1597
CVE-2007-5824
CVE-2007-5825
CVE-2008-1771
Version: 3
Platform(s): Debian GNU/Linux 4.0
Product(s): mt-daapd
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:6461
 
Oval ID: oval:org.mitre.oval:def:6461
Title: Debian GNU/Linux 4.0 is installed.
Description: Debian GNU/Linux 4.0 (etch) is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian_gnu/linux:4.0
Version: 9
Platform(s): Debian GNU/Linux 4.0
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:8291