VDB
CVE-2006-3124
CVE-2006-3124
PUBLISHED
CVSS 7.5 HIGH
Buffer overflow in the HTTP header parsing in Streamripper before 1.61.26 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted HTTP headers.
EPSS 39.46% · 97.4th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
39.46%
97.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| streamripper | streamripper | 1.61.24, 1.61.25 |
Timeline
- Aug 26, 2006 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 1, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 8, 2023 EPSS Score
- Apr 15, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- 21749 third-party-advisory
- http://sourceforge.net/project/shownotes.php?release_id=442126 url
- DSA-1158 vendor-advisory
- 21579 third-party-advisory
- 21658 third-party-advisory
- 21801 third-party-advisory
- 19707 vdb
- SUSE-SR:2006:021 vendor-advisory
- http://downloads.securityfocus.com/vulnerabilities/exploits/streamripper-aug292006.c url
- GLSA-200609-01 vendor-advisory
- ADV-2006-3387 vdb
- 28178 vdb
- streamripper-httpheader-bo(28567) vdb
- https://nvd.nist.gov/vuln/detail/CVE-2006-3124 advisory