CVE-2006-0489 Information

Description

LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks DISPUTED LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks Buffer overflow in the font command of mIRC probably 6.16 allows local users to execute arbitrary code via a long string. NOTE: the original researcher claims that issue has been disputed by the vendor and that the vendor stated \as far as I can tell this is neither an exploit nor a vulnerability. The above report describes a local bug in mIRC.\ It could be that this is only exploitable by the user of the application and thus would not cross privilege boundaries unless under an otherwise restrictive environment such as a kiosk.

Reference

http://securityreason.com/securityalert/383 http://trout.snt.utwente.nl/ubbthreads/showflat.php?Cat=0&Board=bugreports&Number=118751 http://www.osvdb.org/22942 http://www.securiteam.com/windowsntfocus/5IP080AHPQ.html http://www.securityfocus.com/archive/1/423192/100/0/threaded http://www.securityfocus.com/archive/1/423758/100/0/threaded

Share on: