Vulnerabilities > CVE-2002-0552 - Remote Buffer Overflow vulnerability in Melange Chat System 2.0.2Beta2

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
melange
exploit available

Summary

Multiple buffer overflows in Melange Chat server 2.02 allow remote or local attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long argument in the /yell command, (2) long lines in the /etc/melange.conf configuration file, (3) long file names, or possibly other attacks.

Vulnerable Configurations

Part Description Count
Application
Melange
1

Exploit-Db

descriptionMelange Chat System 2.0.2 Beta 2 /yell Remote Buffer Overflow Vulnerability. CVE-2002-0552. Dos exploits for multiple platform
idEDB-ID:21379
last seen2016-02-02
modified2002-04-14
published2002-04-14
reporterDVDMAN
sourcehttps://www.exploit-db.com/download/21379/
titleMelange Chat System 2.0.2 Beta 2 /yell Remote Buffer Overflow Vulnerability