Trillian IRC Module Buffer Overflow Vulnerability
BID:5373
Info
Trillian IRC Module Buffer Overflow Vulnerability
| Bugtraq ID: | 5373 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 31 2002 12:00AM |
| Updated: | Jul 31 2002 12:00AM |
| Credit: | Discovered John C. Hennessy <[email protected]>. |
| Vulnerable: |
Cerulean Studios Trillian 0.6351 Cerulean Studios Trillian 0.725 Cerulean Studios Trillian 0.73 |
| Not Vulnerable: | |
Discussion
Trillian IRC Module Buffer Overflow Vulnerability
A buffer overflow condition has been reported in the Trillian IRC module. The condition is due to insecure handling of data extracted from server responses. An attacker in control of a malicious server may exploit vulnerable clients who have connected.
A buffer overflow condition has been reported in the Trillian IRC module. The condition is due to insecure handling of data extracted from server responses. An attacker in control of a malicious server may exploit vulnerable clients who have connected.
Exploit / POC
Trillian IRC Module Buffer Overflow Vulnerability
An exploit written by John C. Hennessy is available:
An exploit written by John C. Hennessy is available:
Solution / Fix
Trillian IRC Module Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.