debian · CVE-2018-18820

Quick triage

Priority: not yet assigned Published: Updated: Mon, 29 Jun 2026 14:21:13 GMT

View at Official debian advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2018-18820 not yet assigned priority: Debian including 1 source packages (icecast2), 4 status rows across 4 suites (bookworm, bullseye, sid, trixie): resolved 4.

Description:

A buffer overflow was discovered in the URL-authentication backend of the Icecast before 2.4.4. If the backend is enabled, then any malicious HTTP client can send a request for that specific resource including a crafted header, leading to denial of service and potentially remote code execution.

cvelogic Threat Intelligence