PT-2007-6610 · Miranda · Miranda
Publicado
2007-10-19
·
Atualizado
2017-07-29
·
CVE-2007-5590
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Miranda versions prior to 0.7.1
Description
The issue involves multiple buffer overflows that can be exploited by remote attackers to execute arbitrary code. This is possible through various vectors, including IRC options, Jabber forms, and certain aspects of the ICQ and Yahoo! instant messaging functionality.
Recommendations
For versions prior to 0.7.1, update to version 0.7.1 or later to resolve the issue. As a temporary workaround, consider restricting the use of IRC options, Jabber forms, ICQ, and Yahoo! instant messaging functionality until the update is applied.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Miranda