Stack-based buffer overflow in the LiveJournal support (hooks/ljhook.cc) in CenterICQ 4.9.11 up to and including 4.21.0, when using unofficial LiveJournal servers, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code by adding the victim as a friend and using long (1) username and (2) real name strings.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
centericq centericq 4.9.12 |
||
centericq centericq 4.21 |
||
centericq centericq 4.9.11 |
||
centericq centericq 4.12 |
||
centericq centericq 4.13 |
||
centericq centericq 4.14 |
||
centericq centericq 4.20 |