E-Mail:

Trillian MSN Module Buffer Overflow Vulnerability

“CRITICAL: Moderately critical IMPACT: System access WHERE: From remote

Komrade has reported a vulnerability in Trillian, which can be exploited by malicious people to compromise a user’s system. The vulnerability is caused due to a boundary error within the MSN module. This can be exploited to cause a buffer overflow by passing an overly long string (about 4096 bytes) from a MSN messenger server. Successful exploitation requires that a malicious person either intercepts and manipulates traffic sent from a MSN messenger server to the user or get the user’s Trillian to connect to a malicious MSN messenger server.

The vulnerability has been reported in version 0.74i. Other versions may also be affected.

Solution: Don’t use the MSN Messenger functionality in the product.”

What Do You Think?

 

Want to Start a Blog Here for Free?

Are you an expert in one subject or another? If your goal is to help others and dispense hard-earned information back to the community, stake a claim on your very own Lockergnome blog today! You can write about anything - no matter the topic. Sign-up to start blogging!

Books, Science - Oct 1, 2008

Head First Physics

64 queries / 0.949 seconds.