OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq Archives: Re: ICQ Buffer Overflow Exploit

Re: ICQ Buffer Overflow Exploit


Subject: Re: ICQ Buffer Overflow Exploit
From: Bryce Walter (brycewalterHOTMAIL.COM)
Date: Tue Jan 18 2000 - 13:43:26 CST


Yes, but how tough would it be to write your own client to send msgs on the
icq network. MS did it w/ AOL's instant messenger. :)

>I have been playing with this bug a little, and it seems that ICQ only
>picks
>up oversize messages when they are keyed in, and not when they are pasted.
>maybe it wouldn't be so bad if this was fixed so that at least the client
>couldn't be used to execute this attack. :-/

______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com



This archive was generated by hypermail 2b27 : Wed Jan 19 2000 - 11:30:51 CST