PT-2003-1224 · Cerulean Studios · Trillian
Published
2003-03-18
·
Updated
2008-09-05
·
CVE-2002-1488
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Trillian versions 0.73 through 0.74
Description
The issue allows remote malicious IRC servers to cause a denial of service (crash) via a PART message with either a missing channel or a channel that the Trillian user is not in.
Recommendations
For Trillian version 0.73, consider disabling the IRC component until a patch is available.
For Trillian version 0.74, consider disabling the IRC component until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Trillian