Trillian Basic PNG Image Buffer Overflow Vulnerability
- 0
- Add a Comment
Critical: Moderately critical
Impact: System access
Where: From remote
Solution Status: Unpatched
Software: Trillian Basic 3.x
Tal zeltzer has reported a vulnerability in Trillian Basic, which can be exploited by malicious people to compromise a user’s system.
The vulnerability is caused due to a boundary error in the processing of PNG images. This can be exploited to cause a buffer overflow by sending a specially crafted display image to a vulnerable client via e.g. the MSN protocol.
Successful exploitation can lead to execution of arbitrary code.
The vulnerability has been reported in version 3.0. Other versions may also be affected.
Solution: Use another product.”
Full article: Secunia Advisory: SA14470
