Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-2478
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-2478

Description:
Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face attribute containing a long UTF-8 string.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/33986
  http://xforce.iss.net/xforce/xfdb/33985

ST
  1017982

SAID
  Secunia Advisory: SA25086

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=522

CONFIRM
  http://blog.ceruleanstudios.com/?p=131

BID
  23730


Return to the previous page.