First published: Tue Mar 18 2003(Updated: )
The IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service (crash) via a PART message with (1) a missing channel or (2) a channel that the Trillian user is not in.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cerulean Studios Trillian | =0.74 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1488 is rated as a moderate severity vulnerability due to its ability to cause denial of service.
To mitigate CVE-2002-1488, users should upgrade to a patched version of Trillian if available.
Trillian versions 0.73 and 0.74 are affected by CVE-2002-1488.
CVE-2002-1488 describes a denial of service attack via malicious PART messages from IRC servers.
Yes, CVE-2002-1488 can be exploited remotely by sending crafted messages from malicious IRC servers.