First published: Wed Jan 10 2007(Updated: )
Stack-based buffer overflow in the LiveJournal support (hooks/ljhook.cc) in CenterICQ 4.9.11 through 4.21.0, when using unofficial LiveJournal servers, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by adding the victim as a friend and using long (1) username and (2) real name strings.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Centericq Centericq | =4.9.11 | |
Centericq Centericq | =4.9.12 | |
Centericq Centericq | =4.13 | |
Centericq Centericq | =4.20 | |
Centericq Centericq | =4.21 | |
Centericq Centericq | =4.14 | |
Centericq Centericq | =4.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.