Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://tigger.uic.edu/~jlongs2/holes/yamt.txt
http://www.vuxml.org/freebsd/d4a7054a-6d96-11d9-a9e7-0001020eed82.html
Insight
The following package is affected: yamt
CVE-2004-1302
The id3tag_sort function in id3tag.c for YAMT 0.5 allows remote attackers to execute arbitrary commands via an MP3 file with double quotes in the Artist tag.
Severity
Classification
-
CVE CVE-2004-1302 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities