Is affected the system:
Cerulean Studios Trillian 3.1.9.0
Description:
--------------------------------------------------------------------------------
BUGTRAQ ID: 28747
Trillian is one chats the procedure, with many kinds of immediate communication procedure use same connection, including AIM, ICQ, Yahoo! Messenger, MSN Messenger and IRC.
The Trillian xml form resolver when analyzes the .dtd document type has the buffer overflow crack, if the user were deceived has downloaded the malicious document and installs stixe table of contents, will trigger this overflow, caused to carry out the random order.
<* origin: david130490 (david130490@hotmail.com)
Link: http://marc.info/?l=bugtraq&m=120794390430746&w=2
*>
Test method:
--------------------------------------------------------------------------------
Warning
The following procedure (method) possibly has the aggressivity, only supplies the safe research and teaching. The user risk is proud!
http://www.p1mp4m.es/index.php?act=attach&type=post&id=18
Suggested:
--------------------------------------------------------------------------------
Manufacturer patch:
Cerulean Studios
----------------
At present the manufacturer has not provided the patch or the promotion procedure, we suggested that uses this software's user momentarily to pay attention to the manufacturer the main page to gain the newest edition:
http://www.ceruleanstudios.com/
|