Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown

CVE-2008-5402

Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."
0
Attacker Value
Unknown

CVE-2008-5403

Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.
0
Attacker Value
Unknown

CVE-2008-5401

Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."
0
Attacker Value
Unknown

CVE-2008-2409

Disclosure Date: May 23, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in Cerulean Studios Trillian before 3.1.10.0 allows remote attackers to execute arbitrary code via unspecified attributes in the X-MMS-IM-FORMAT header in an MSN message.
0
Attacker Value
Unknown

CVE-2004-2304

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2004-2370

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in Trillian 0.71 through 0.74f and Trillian Pro 1.0 through 2.01 allows remote attackers to execute arbitrary code via a Yahoo Messenger packet with a long key name.
0
Attacker Value
Unknown

CVE-2002-1485

Disclosure Date: April 02, 2003 (last updated February 22, 2025)
The AIM component of Trillian 0.73 and 0.74 allows remote attackers to cause a denial of service (crash) via certain strings such as "P > O < C".
0
Attacker Value
Unknown

CVE-2002-1486

Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Multiple buffer overflows in the IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service and possibly execute arbitrary code via (1) a large response from the server, (2) a JOIN with a long channel name, (3) a long "raw 221" message, (4) a PRIVMSG with a long nickname, or (5) a long response from an IDENT server.
0
Attacker Value
Unknown

CVE-2002-2162

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Trillian directory, which allows local users to gain access to other user accounts.
0
Attacker Value
Unknown

CVE-2002-2366

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in the XML parser of Trillian 0.6351, 0.725 and 0.73 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a skin with a long colors file name in trillian.xml.
0