CVE-2002-2390: Buffer Overflow
Published Dec 31, 2002
·Updated
Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request.
Affected Software
3 affected components
Cerulean Studios Trillian Pro=1.0
Cerulean Studios Trillian=0.73
Cerulean Studios Trillian=0.74
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 31, 2007
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2390?
The severity of CVE-2002-2390 is considered high due to its potential for denial of service and arbitrary code execution.
2
How do I fix CVE-2002-2390?
To fix CVE-2002-2390, update to a version of Trillian that is not affected, specifically versions newer than 1.0, 0.74, and 0.73.
3
Which versions of Trillian are affected by CVE-2002-2390?
CVE-2002-2390 affects Trillian versions 0.6351, 0.725, 0.73, 0.74, and 1.0 Pro.
4
What attack vector is exploited in CVE-2002-2390?
CVE-2002-2390 is exploited through a long request sent to the IDENT daemon.
5
What are the consequences of CVE-2002-2390 exploitation?
Exploitation of CVE-2002-2390 can cause the application to crash and may allow attackers to execute arbitrary code.