OSVDB ID: 23528

Title: Trillian AIM Plugin Null Message DoS

Info

Disclosure

Feb 28, 2006

Discovery

Sep 26, 2005

Dates

Exploit

Feb 28, 2006

Solution

Unknown

Description

Trillian contains a flaw that may allow a remote denial of service. The issue is triggered when a blank AOL AIM message is received, and will result in loss of availability for the software.

Classification

Location: Remote / Network Access
Attack Type: Denial of Service
Impact: Loss of Availability
Exploit: Exploit Public
Disclosure: OSVDB Verified

Solution

Upgrade to Trillian AOL plugin version 3.1.0.126 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

Cerulean Studios

Trillian Basic

3.1.0.121

Trillian Pro

3.1.0.121

References

Credit

  • Sullo - sullocirt.net - cirt.net


Direct URL: http://osvdb.org/23528