Search:     Advanced search
server monitoring

SHOUTcast Server User-Agent / Host Header Denial of Service Vulnerability

Article ID: 10717
Last updated: 27 Jan, 2009
Views: 502
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

SHOUTcast Server User-Agent / Host Header Denial of Service Vulnerability

This script is Copyright (C) 2005-2007 Tenable Network Security

FamilyGeneral
Plugin ID10717
Bugtraq ID
CVE IDCVE-2001-1304

Description:

Synopsis :

The remote streaming audio server is prone to a denial of service
attack.

Description :

The remote host is running SHOUTcast Server, a streaming audio server
from Nullsoft.

According to its banner, the installed version of SHOUTcast server
will reportedly crash when it receives several HTTP requests with
overly long User-Agent and/or Host request headers.

See also :

http://archives.neohapsis.com/archives/bugtraq/2001-08/0048.html

Solution :

Unknown at this time.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
This article was:   Helpful | Not Helpful
Prev   Next
TCP sequence number approximation     Netscape Enterprise Default Administrative Password