First published: Wed Nov 02 2005(Updated: )
Buffer overflow in Mirabilis ICQ 2003a allows user-assisted attackers to execute arbitrary code by convincing a user to enter long strings into the First Name and Last Name fields.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CenterICQ | =2002a_build3728 | |
CenterICQ | =2003a_build3800 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3433 is considered a high severity vulnerability due to potential arbitrary code execution.
To fix CVE-2005-3433, users should upgrade to a patched version of ICQ that is not vulnerable to this buffer overflow.
CVE-2005-3433 affects Mirabilis ICQ versions 2002a build 3728 and 2003a build 3800.
CVE-2005-3433 is associated with a user-assisted attack requiring the user to input long strings.
CVE-2005-3433 requires user interaction, so it cannot be exploited remotely without user assistance.