OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Kevin Day (toastytemphost.dragondata.com)
Date: Mon Feb 04 2002 - 19:18:23 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    >
    > General Info
    > ------------
    > Researched by: James Martin
    > Full advisory: http://www.uuuppz.com/research/adv-001-mirc.htm
    > Exploit: Proof of concept code available at above URL.
    >
    > Product: mIRC
    > Website: http://www.mirc.com
    > Version: 5.91 and all prior versions (to be best of my knowledge).
    > Fix: A patch will be available soon from offical mIRC sites.
    > Please do not download from unofficial sites, as you may download
    > a trojaned version.
    >
    > Type: Buffer Overrun
    > Risk: High
    >

    mIRC 6.0 was released on Sunday, which corrects this issue.

    -- Kevin Day