SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

Vulnerability Note VU#148564

Apple QuickTime/Darwin Streaming Server integer overflow in MP3Broadcaster utility

Overview

Apple's QuickTime and Darwin Streaming Server (DSS) package includes a utility called MP3Broadcaster. This utility contains an integer overflow which may be exploited to cause a denial of service.

I. Description

Apple's QuickTime and Darwin Streaming Server is software which provides integrated distribution of various forms of digital content. Such content can be delivered over a network using Real-Time Transport Protocol (RTP) and Real-Time Streaming Protocol (RTSP). Streaming media content can include files encoded in QuickTime, MPEG, and MP3 formats. A utility package called MP3Broadcaster contains an integer overflow vulnerability. Like buffer overflows, an integer overflow may be exploited to cause affected software to crash. Under certain circumstances, an integer overflow has the potential to be allow an attacker to exploit arbitrary code, but in this case, does not appear possible.

The integer overflow in MP3Broadcaster in DSS 4.1.3 is triggered when parsing malformed ID3 tags within crafted MP3 files. This vulnerability only has the potential to be exploited by remote attackers if they can get vulnerable servers to parse malicious MP3 files (i.e., by uploading a file).

II. Impact

Exploitation of this vulnerability may lead to denial of service.

III. Solution

The CERT/CC is currently unaware of a practical solution to this problem.

Ensure unauthenticated remote broadcasts is disabled.

Systems Affected

VendorStatusDate NotifiedDate Updated
Apple Computer Inc.Vulnerable23-Dec-2003

References


http://securitytracker.com/alerts/2003/May/1006822.html
http://www.securityfocus.com/bid/7660
http://www.iss.net/security_center/static/12054.php

Credit

Sir Mordred reported this vulnerability in several public forums.

This document was written by Jeffrey S. Havrilla.

Other Information

Date Public:2003-05-22
Date First Published:2003-12-23
Date Last Updated:2003-12-23
CERT Advisory: 
CVE-ID(s): 
NVD-ID(s): 
US-CERT Technical Alerts: 
Metric:4.69
Document Revision:9

If you have feedback, comments, or additional information about this vulnerability, please send us email.
 

 
Page Corner Image
Copyright 2003 Carnegie Mellon University
Disclaimers and copyright information
Get Adobe Reader Get Adobe Reader