what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

oddsock.txt

oddsock.txt
Posted Jul 17, 2002
Authored by Lucas Lundgren | Site outpost24.com

Outpost24 Advisory - The Oddsock Playlist Generator v2.1 contains multiple buffer overflow vulnerabilities which result in a denial of service against the winamp/shoutcast service.

tags | denial of service, overflow, vulnerability
SHA-256 | 90c57c359b6bdbc11c79f220a2fbf14980057252f61933fa10f8406116cc4f9f

oddsock.txt

Change Mirror Download
                                   Outpost24 Advisory
www.outpost24.com


Advisory Name: Oddsock PlaylistGenerator Multiple BufferOverlow vulnerability
Release date: 15/07-02
Software : Song Requester Version : 2.1
Platform: Windows NT/XP/95/98/2000
Severity: DoS Vulnerability, that terminates Winamp, and restart
Author: Lucas Lundgren (ll@outpost24.com)
Vedor Status: No response


Summary:

Oddsock Playlist generator is used by Radio DJs to allow listeners to
choose a song to play from the Winamp Playlist.Song Requester Version
2.1 contains multiple buffer overflows, which will result in a DoS
attack against the Winamp/Shoutcast service.

The DJ will have to restart Winamp in order to make it work again. There
are two major kinds of DoS attacks against this software: the first will
display an error message, and inform the user that a logfile has been
created. The second attack closes down Winamp and restores the
playlist from the previous state, so that any newly added songs will not
be displayed in the playlist.It also restores the admin password to what
is was previously, if it has been changed without restarting Winamp.

Technical Details:

By parsing long names or characters to the CGI files in the Song
Requester, a DoS is avalible, closing down Winamp and / or leaving a
error log. You could try to parse

http://<musicserver>/request.cgi?listpos=9999999999999999999999999999
(9x256)

This will cause Winamp to crash, and makes Dr Watson dump a logfile.
If you parse:

http://<musicserver>/request.cgi?psearch=999999999999999999999999999999
(9x254)

Winamp will die without any error messages.

Oddsock overflows the playlist and crashes the Winamp player. If you
want to check it out, please look at Dr Watson logs for more details.
All the CGI files in Song Requester are vulnerable to DoS attacks, even
the 'admin.cgi'. Please note that the password you type in is in clear
text; no asterix signs replace the characters.

Outpost24
Contact: Lucas Lundgren (ll@outpost24.com)
Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close