First published: Tue Dec 31 2002(Updated: )
Format string vulnerability in the error handling of IRC invite responses for Trillian 0.725 and 0.73 allows remote IRC servers to execute arbitrary code via an invite to a channel with format string specifiers in the name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cerulean Studios Trillian | =0.73 | |
Cerulean Studios Trillian | =0.725 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2155 is classified as a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2002-2155, upgrade to a version of Trillian that is not vulnerable, specifically versions above 0.73.
CVE-2002-2155 affects Trillian versions 0.725 and 0.73.
CVE-2002-2155 exploits a format string vulnerability in the error handling of IRC invite responses.
The consequences of CVE-2002-2155 may include arbitrary code execution on the vulnerable computer.