CVE-2005-0838
EPSS 3.7%
Description
Multiple buffer overflows in the XSL parser for IceCast 2.20 may allow attackers to cause a denial of service and possibly execute arbitrary code via (1) a long test value in an xsl:when tag, (2) a long test value in an xsl:if tag, or (3) a long select value in an xsl:value-of tag.
How to fix CVE-2005-0838
No fixed version has been published yet. Mitigate by removing the affected package or applying upstream guidance from the references below.
- Debian/icecast2—no fix listed
Is CVE-2005-0838 being exploited?
Low — EPSS is 3.7%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0