CVE Database
/

CVE-2007-2478

Back to search

CVE-2007-2478

Published: May 3, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple heap-based buffer overflows in the IRC component in Cerulean Studios Trillian Pro before 3.1.5.1 allow remote attackers to corrupt memory and possibly execute arbitrary code via (1) a URL with a long UTF-8 string, which triggers the overflow when the user highlights it, or (2) a font HTML tag with a face attribute containing a long UTF-8 string.

VendorProductVersions

n/a

n/a

affected
n/a

References

25086
third-party-advisory
x_refsource_SECUNIA
trillian-urlhighlight-bo(33985)
vdb-entry
x_refsource_XF
1017982
vdb-entry
x_refsource_SECTRACK
23730
vdb-entry
x_refsource_BID
35721
vdb-entry
x_refsource_OSVDB
ADV-2007-1596
vdb-entry
x_refsource_VUPEN
trillian-fontface-bo(33986)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now