BetaONE will rise again!


Reply
  #1  
Old 19th Jun 07, 04:11 PM
NewsBot's Avatar
NewsBot NewsBot is offline
Senior Member
 
Join Date: Oct 2004
Posts: 31,027
NewsBot will become famous soon enough
Text bug blights Trillian
Users of the popular Trillian instant messaging client need to update their software following the discovery of a serious security bug. The multi-protocol chat application from Cerulean Studios is subject to a heap overflow vulnerability because of programming errors involving the word-wrapping of UTF-8 text.

As a result, hackers might be able to crash versions of the application, thereby loading exploit code onto vulnerable systems. Viewing a malicious message containing a specially malformed UTF-8 string would be enough to trigger the attack. "The MSN protocol is a known attack vector for this vulnerability. However, exploitation could potentially occur using any supported protocol," an advisory by iDefense warns.

View: The full story
News source: The Reg

Read full story...



More...
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Information disclosure bug blights IE7 release Alpine BetaONE News 0 19th Oct 06 02:12 PM
How To Change The "New Text Document"? Dudelive Windows NT/2000/XP (+ Service Packs) 1 6th Mar 06 07:11 AM
Explorer vulnerability posts copy text to web Alpine BetaONE News 0 23rd Feb 06 02:57 PM
Trillian Vulnerability - Security Flaw Found in Trillian IM NewsBot NeoWin News 0 27th Mar 05 01:00 PM
Trillian 3 Build 950 Released today Sony BetaONE News 0 24th Nov 04 10:37 AM


All times are GMT +1. The time now is 06:17 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.