VDB
CVE-2007-6454
CVE-2007-6454
PUBLISHED
CVSS 10 CRITICAL
Heap-based buffer overflow in the handshakeHTTP function in servhs.cpp in PeerCast 0.1217 and earlier, and SVN 344 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long SOURCE request.
EPSS 38.63% · 97.3th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
38.63%
97.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| peercast | peercast | 0, 0, 0.1211 |
Timeline
- Dec 20, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
References
- GLSA-200801-22 vendor-advisory
- 26899 vdb
- http://bugs.gentoo.org/show_bug.cgi?id=202747 url
- 28719 third-party-advisory
- peercast-handshakehttp-bo(39075) vdb
- DSA-1583 vendor-advisory
- 28120 third-party-advisory
- 30325 third-party-advisory
- 20071217 Heap overflow in PeerCast 0.1217 mailing-list
- 28260 third-party-advisory
- DSA-1441 vendor-advisory
- http://aluigi.altervista.org/adv/peercasthof-adv.txt url
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=457300 url
- ADV-2007-4246 vdb
- 3461 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-6454 advisory