10
CVSSv2

CVE-2001-0233

Published: 26/03/2001 Updated: 10/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in micq client 0.4.6 and previous versions allows remote malicious users to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.

Vulnerable Product Search on Vulmon Subscribe to Product

matthew smith micq

debian debian linux 2.2

redhat linux 6.0

redhat linux 6.1

redhat linux 6.2

redhat linux 7.0

Vendor Advisories

PkC has reported that there is a buffer overflow in sprintf() in micq versions 046 and previous, that allows to a remote attacker able to sniff packets to the ICQ server to execute arbitrary code on the victim system We recommend you upgrade your micq package immediately ...

Exploits

source: wwwsecurityfocuscom/bid/2254/info micq is a chat program for Linux systems micq-046 running on Linux/ix86 (Slackware 71 - RedHat 61) is vulnerable to a remote buffer overflow attack Other versions on other platforms may also be vulnerable This may allow remote attackers to gain access to vulnerable hosts /* ...