Infesting you with Virus News
 

Vulnerabilities

Trillian buffer overflow and DDOS vulnerability (PC1-2009-0871)

Overview

Vulnerability chart

Trillian is vulnerable to a buffer overflow.
DDOS
Unknown patch
availability
Patch implementation
unknown

References to Advisories, Solutions, and Tools

Description:

If a victim is convinced to download a specially-crafted .dtd file, a remote attacker is able either to overflow a buffer and execute arbitrary code on the system using SYSTEM rights or make the application to crash.

Impact:

With the help of this vulnerability, remote attackers are able to compromise an administrator and obtain access. Also, they could execute arbitrary code or commands. This type of vulnerability could cause denial of service as well.

References:http://archives.neohapsis.com/archives/bugtraq/2008-04/0138.html.
http://www.ceruleanstudios.com/.

Security Bulletin Summary

Products: Trillian
Risk level
  • Low
  • Medium
  • High
  • Extreme
  • Severe
Warning: security vulnerability level = severe
9 vulnerabilities(-y) found between 19 June, 2007 and 3 April, 2009.
Trillian refers to a proprietary multiprotocol instant messaging application... more
See also: Trillian Instant Messenger

Publisher: ISS
Operating Systems: UNIX variants (UNIX, Linux, OSX) Windows
Impact:Administrator Compromise Execute Arbitrary Code/Commands Denial of Service
Access:Remote/Unauthenticated
Original Bulletin:http://xforce.iss.net/xforce/xfdb/41782
Revision history:April 3 2009: Corrected formatting April 3 2009: Initial Release

Say something interesting!

Name:
Email:
Website:
Comment:
Please type 5-digit security code below:
Captcha image for spam protection

Latest Comments

July 31, 2010
http://temple-b .. 6/fha-203k.htmlfha 203k, :(, http://uksoccer .. sy-grammar.htmleasy grammar, hbt,... more..
July 31, 2010
http://thedukes .. ncy-meyers.htmlnancy meyers, 8332, http://maillots .. /***-girl.html*** girl,... more..
July 31, 2010
http://arthriti .. me-breasts.htmlprime breasts, jnin, http://rentacar .. ssing-tube.htmlpissing tube,... more..
more comments..
rss
Home > Vulnerabilities > pc1-2009-0871