PublicDate: 2008-04-16 15:05:00 UTC Candidate: CVE-2008-1771 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1771 Description: Integer overflow in the ws_getpostvars function in Firefly Media Server (formerly mt-daapd) 0.2.4.1 (0.9~r1696-1.2 on Debian) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a large Content-Length. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mt-daapd: upstream_mt-daapd: released (0.9~r1696-1.3) dapper_mt-daapd: DNE feisty_mt-daapd: needed (reached end-of-life) gutsy_mt-daapd: needed (reached end-of-life) hardy_mt-daapd: released (0.9~r1696-1.1ubuntu0.1) intrepid_mt-daapd: not-affected (0.9~r1696-1.3build1) devel_mt-daapd: not-affected (0.9~r1696-1.3build1)