Buffer overflow in playlistimport.cpp in Kaffeine Player 0.4.2 through 0.7.1 allows user-assisted attackers to execute arbitrary code via long HTTP request headers when Kaffeine is fetching remote playlists, which triggers the overflow in the http_peek function.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Kaffeine_player | Kaffeine | 0.4.2 (including) | 0.4.2 (including) |
Kaffeine_player | Kaffeine | 0.4.3 (including) | 0.4.3 (including) |
Kaffeine_player | Kaffeine | 0.4.3b (including) | 0.4.3b (including) |
Kaffeine_player | Kaffeine | 0.5_rc1 (including) | 0.5_rc1 (including) |
Kaffeine_player | Kaffeine | 0.7.1 (including) | 0.7.1 (including) |
Kaffeine | Ubuntu | dapper | * |
Kaffeine | Ubuntu | devel | * |
Kaffeine | Ubuntu | edgy | * |
Kaffeine | Ubuntu | feisty | * |