Mirabilis ICQ Remote Buffer Overflow Vulnerability
BID:3813
Info
Mirabilis ICQ Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 3813 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 06 2002 12:00AM |
| Updated: | Jan 06 2002 12:00AM |
| Credit: | Discovered by Daniel Tan <[email protected]> and posted to the Vuln-Dev mailing list on January 6, 2001. |
| Vulnerable: |
Mirabilis ICQ 2001 b Build #3638 Mirabilis ICQ 2001 b Build #3636 Mirabilis ICQ 2001 a Mirabilis ICQ 2000.0 b Build 3278 Mirabilis ICQ 2000.0 A |
| Not Vulnerable: |
Mirabilis ICQ 2001 b Build #3659 |
Discussion
Mirabilis ICQ Remote Buffer Overflow Vulnerability
ICQ is an instant messaging application from Mirabilis.
A buffer overflow exists in ICQs handling of specially formatted communications. A maliciously constructed Voice Video & Games request with a TLV (type, length, value) type of 0x2711 may overwrite data on the stack, including a return address. This can easily cause the ICQ client to crash, and it may be possible to remotely execute arbitrary code.
It has been reported that this issue is not specific to this TLV type, and may also be exploited through direct client to client communication.
ICQ is an instant messaging application from Mirabilis.
A buffer overflow exists in ICQs handling of specially formatted communications. A maliciously constructed Voice Video & Games request with a TLV (type, length, value) type of 0x2711 may overwrite data on the stack, including a return address. This can easily cause the ICQ client to crash, and it may be possible to remotely execute arbitrary code.
It has been reported that this issue is not specific to this TLV type, and may also be exploited through direct client to client communication.
Exploit / POC
Mirabilis ICQ Remote Buffer Overflow Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Mirabilis ICQ Remote Buffer Overflow Vulnerability
Solution:
Updated versions are available:
Mirabilis ICQ 2001 a
Mirabilis ICQ 2001 b Build #3636
Mirabilis ICQ 2001 b Build #3638
Mirabilis ICQ 2000.0 A
Mirabilis ICQ 2000.0 b Build 3278
Solution:
Updated versions are available:
Mirabilis ICQ 2001 a
-
Mirabilis 2001b Beta v5.18 Build #3659
http://www.icq.com/download/
Mirabilis ICQ 2001 b Build #3636
-
Mirabilis 2001b Beta v5.18 Build #3659
http://www.icq.com/download/
Mirabilis ICQ 2001 b Build #3638
-
Mirabilis 2001b Beta v5.18 Build #3659
http://www.icq.com/download/
Mirabilis ICQ 2000.0 A
-
Mirabilis 2001b Beta v5.18 Build #3659
http://www.icq.com/download/
Mirabilis ICQ 2000.0 b Build 3278
-
Mirabilis 2001b Beta v5.18 Build #3659
http://www.icq.com/download/
References
Mirabilis ICQ Remote Buffer Overflow Vulnerability
References:
References:
- ICQ Homepage (Mirabilis)
- ICQ Security Announcement (Mirabilis)