OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Vuln-Dev Archives: Re: icq vuln

Re: icq vuln


Subject: Re: icq vuln
From: Al Huger - Mail Account (ah1SECURITYFOCUS.COM)
Date: Sun Jan 16 2000 - 16:06:23 CST


On Sun, 16 Jan 2000, Rietveld, Marco wrote:

> |2000-01-14-13:20:27 nascheme:
> |> ICQ is a disaster waiting to happen. There is strcat and strcpy
> |> all over the place last time I looked at it. I didn't have time
> |> to develop and exploit though.
>
> there was a recent post in bugtraq about how there's a buffer-overflow
> vulnerability when messaging URL's.. it's explained at
> http://www.securityfocus.com/vdb/.. the vulnerabilities database..
>
> marcolof
>

In particular:

http://www.securityfocus.com/bid/929



This archive was generated by hypermail 2b27 : Sun Jan 16 2000 - 21:15:22 CST