First published: Tue Dec 31 2002(Updated: )
Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cerulean Studios Trillian Pro | =1.0 | |
Cerulean Studios Trillian | =0.73 | |
Cerulean Studios Trillian | =0.74 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2002-2390 is considered high due to its potential for denial of service and arbitrary code execution.
To fix CVE-2002-2390, update to a version of Trillian that is not affected, specifically versions newer than 1.0, 0.74, and 0.73.
CVE-2002-2390 affects Trillian versions 0.6351, 0.725, 0.73, 0.74, and 1.0 Pro.
CVE-2002-2390 is exploited through a long request sent to the IDENT daemon.
Exploitation of CVE-2002-2390 can cause the application to crash and may allow attackers to execute arbitrary code.