ID

VAR-200303-0102


CVE

CVE-2003-0055


TITLE

Apple Quicktime/Darwin MP3 Broadcaster File name remote buffer overflow vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-200303-035

DESCRIPTION

Buffer overflow in the MP3 broadcasting module of Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via a long filename. A vulnerability has been discovered in the Quicktime/Darwin MP3 Broadcaster. The problem occurs due to insufficient bounds checking on MP3 filenames. Processing an MP3 file with a name of excessive length may trigger the condition, effectively causing memory to be overwritten. This issue may be exploitable by a remote attacker to execute arbitrary commands with the privileges of the user running the vulnerable application. By default, these services listen on port 1220/TCP with root user privileges. A remote or local attacker could exploit this vulnerability to serve malicious MP3 files and trigger a buffer overflow. When the MP3 broadcast module processes MP3 files with file names exceeding 256 bytes, buffer overflow may occur

Trust: 1.26

sources: NVD: CVE-2003-0055 // BID: 6957 // VULHUB: VHN-6885

AFFECTED PRODUCTS

vendor:applemodel:quicktime darwin mp3 broadcasterscope:eqversion:*

Trust: 1.0

vendor:applemodel:quicktime darwin mp3 broadcasterscope: - version: -

Trust: 0.6

vendor:applemodel:quicktime mp3 broadcasterscope:eqversion:0

Trust: 0.3

sources: BID: 6957 // CNNVD: CNNVD-200303-035 // NVD: CVE-2003-0055

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2003-0055
value: HIGH

Trust: 1.0

CNNVD: CNNVD-200303-035
value: HIGH

Trust: 0.6

VULHUB: VHN-6885
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2003-0055
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

VULHUB: VHN-6885
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-6885 // CNNVD: CNNVD-200303-035 // NVD: CVE-2003-0055

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2003-0055

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200303-035

TYPE

Boundary Condition Error

Trust: 0.9

sources: BID: 6957 // CNNVD: CNNVD-200303-035

EXTERNAL IDS

db:BIDid:6957

Trust: 2.0

db:NVDid:CVE-2003-0055

Trust: 2.0

db:BUGTRAQid:20030224 QUICKTIME/DARWIN STREAMING ADMINISTRATION SERVER MULTIPLE VULNERABILITIES

Trust: 0.6

db:XFid:3

Trust: 0.6

db:CNNVDid:CNNVD-200303-035

Trust: 0.6

db:VULHUBid:VHN-6885

Trust: 0.1

sources: VULHUB: VHN-6885 // BID: 6957 // CNNVD: CNNVD-200303-035 // NVD: CVE-2003-0055

REFERENCES

url:http://www.securityfocus.com/bid/6957

Trust: 1.7

url:http://lists.apple.com/archives/security-announce/2003/feb/25/applesa20030225macosx102.txt

Trust: 1.7

url:http://www.iss.net/security_center/static/11406.php

Trust: 1.7

url:http://marc.info/?l=bugtraq&m=104618904330226&w=2

Trust: 1.1

url:http://marc.theaimsgroup.com/?l=bugtraq&m=104618904330226&w=2

Trust: 0.6

url:http://www.info.apple.com/usen/security/security_updates.html

Trust: 0.3

url: -

Trust: 0.1

sources: VULHUB: VHN-6885 // BID: 6957 // CNNVD: CNNVD-200303-035 // NVD: CVE-2003-0055

CREDITS

Dave G.※ daveg@atstake.com※Ollie Whitehouse※ ollie@atstake.com

Trust: 0.6

sources: CNNVD: CNNVD-200303-035

SOURCES

db:VULHUBid:VHN-6885
db:BIDid:6957
db:CNNVDid:CNNVD-200303-035
db:NVDid:CVE-2003-0055

LAST UPDATE DATE

2024-08-14T12:26:36.174000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-6885date:2016-10-18T00:00:00
db:BIDid:6957date:2009-07-11T20:06:00
db:CNNVDid:CNNVD-200303-035date:2005-05-13T00:00:00
db:NVDid:CVE-2003-0055date:2016-10-18T02:28:53.500

SOURCES RELEASE DATE

db:VULHUBid:VHN-6885date:2003-03-07T00:00:00
db:BIDid:6957date:2003-02-24T00:00:00
db:CNNVDid:CNNVD-200303-035date:2003-02-24T00:00:00
db:NVDid:CVE-2003-0055date:2003-03-07T05:00:00