CVE Database
/

CVE-2004-0362

Back to search

CVE-2004-0362

Published: Mar 23, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm.

VendorProductVersions

n/a

n/a

affected
n/a

References

9913
vdb-entry
x_refsource_BID
11073
third-party-advisory
x_refsource_SECUNIA
O-104
third-party-advisory
government-resource
x_refsource_CIAC
AD20040318
third-party-advisory
x_refsource_EEYE
pam-icq-parsing-bo(15442)
vdb-entry
x_refsource_XF
4355
vdb-entry
x_refsource_OSVDB
VU#947254
third-party-advisory
x_refsource_CERT-VN
witty-worm-propagation(15543)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now