Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown
CVE-2008-5402
Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."
0
Attacker Value
Unknown
CVE-2008-5403
Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag.
0
Attacker Value
Unknown
CVE-2008-5401
Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."
0
Attacker Value
Unknown
CVE-2008-2408
Disclosure Date: May 23, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in an IMG tag.
0
Attacker Value
Unknown
CVE-2007-2478
Disclosure Date: May 03, 2007 (last updated October 04, 2023)
Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face attribute containing a long UTF-8 string.
0
Attacker Value
Unknown
CVE-2007-2418
Disclosure Date: May 02, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in the Rendezvous / Extensible Messaging and Presence Protocol (XMPP) component (plugins\rendezvous.dll) for Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to execute arbitrary code via a message that triggers the overflow from expansion that occurs during encoding.
0
Attacker Value
Unknown
CVE-2005-2444
Disclosure Date: August 03, 2005 (last updated February 22, 2025)
Trillian Pro 3.1 build 121, when checking Yahoo e-mail, stores the password in plaintext in a world readable file and does not delete the file after login, which allows local users to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2005-0633
Disclosure Date: March 02, 2005 (last updated February 22, 2025)
Buffer overflow in Trillian 3.0 and Pro 3.0 allows remote attackers to execute arbitrary code via a crafted PNG image file.
0
Attacker Value
Unknown
CVE-2004-2304
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2004-2370
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in Trillian 0.71 through 0.74f and Trillian Pro 1.0 through 2.01 allows remote attackers to execute arbitrary code via a Yahoo Messenger packet with a long key name.
0