Vulnerabilities > CVE-2002-1486 - Buffer Overflow vulnerability in Cerulean Studios Trillian 0.725/0.73/0.74

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
cerulean-studios
exploit available

Summary

Multiple buffer overflows in the IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service and possibly execute arbitrary code via (1) a large response from the server, (2) a JOIN with a long channel name, (3) a long "raw 221" message, (4) a PRIVMSG with a long nickname, or (5) a long response from an IDENT server.

Exploit-Db

  • descriptionTrillian 0.6351/0.7x Identd Buffer Overflow Vulnerability. CVE-2002-1486. Remote exploit for windows platform
    idEDB-ID:21804
    last seen2016-02-02
    modified2002-09-18
    published2002-09-18
    reporterLance Fitz-Herbert
    sourcehttps://www.exploit-db.com/download/21804/
    titleTrillian 0.6351/0.7x Identd Buffer Overflow Vulnerability
  • descriptionTrillian 0.73/0.74 IRC JOIN Buffer Overflow Vulnerability. CVE-2002-1486. Dos exploit for windows platform
    idEDB-ID:21813
    last seen2016-02-02
    modified2002-09-20
    published2002-09-20
    reporterLance Fitz-Herbert
    sourcehttps://www.exploit-db.com/download/21813/
    titleTrillian 0.73/0.74 IRC JOIN Buffer Overflow Vulnerability
  • descriptionTrillian 0.725/0.73/0.74 IRC User Mode Numeric Remote Buffer Overflow Vulnerability. CVE-2002-1486. Dos exploit for windows platform
    idEDB-ID:21816
    last seen2016-02-02
    modified2002-09-21
    published2002-09-21
    reporterLance Fitz-Herbert
    sourcehttps://www.exploit-db.com/download/21816/
    titleTrillian 0.725/0.73/0.74 IRC User Mode Numeric Remote Buffer Overflow Vulnerability
  • descriptionTrillian 0.73/0.74 IRC PRIVMSG Buffer Overflow Vulnerability. CVE-2002-1486. Remote exploit for windows platform
    idEDB-ID:21810
    last seen2016-02-02
    modified2002-09-19
    published2002-09-19
    reporterLance Fitz-Herbert
    sourcehttps://www.exploit-db.com/download/21810/
    titleTrillian 0.73/0.74 - IRC PRIVMSG Buffer Overflow Vulnerability
  • descriptionTrillian 0.74 IRC Oversized Data Block Buffer Overflow Vulnerability. CVE-2002-1486. Dos exploit for windows platform
    idEDB-ID:21823
    last seen2016-02-02
    modified2002-09-22
    published2002-09-22
    reporterLance Fitz-Herbert
    sourcehttps://www.exploit-db.com/download/21823/
    titleTrillian 0.74 IRC Oversized Data Block Buffer Overflow Vulnerability