Summary
The remote host is missing an update to freeamp
announced via advisory DSA 587-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20587-1
Insight
Luigi Auriemma discovered a buffer overflow condition in the playlist module of freeamp which could lead to arbitrary code execution.
Recent versions of freeamp were renamed into zinf.
For the stable distribution (woody) this problem has been fixed in version 2.1.1.0-4woody2.
For the unstable distribution (sid) this problem does not exist in the zinf packageas the code in question was rewritten.
We recommend that you upgrade your freeamp packages.
Severity
Classification
-
CVE CVE-2004-0964 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities