funsec mailing list archives

Re: Fwd: [Full-disclosure] ZDI-08-054: Multiple Vendor libpur ple MSN Protocol SLP Message Heap Overflow Vulnerability


From: "James Matthews" <nytrokiss () gmail com>
Date: Thu, 28 Aug 2008 16:09:50 -0700

Also Meebo.com

On Thu, Aug 28, 2008 at 2:31 PM, Colin Keigher <colinkeigher () telus net>wrote:

It should just affect Gaim, AdiumX, and Pidgin. Trillian amongst other use
their own propietary libraries.



- Colin



On Aug 28, 2008, *fergdawg () netzero net* wrote:


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -- Gadi Evron <ge () linuxbox org> wrote:

That's huge.

I just disabled MSN.


I'm wondering if other platforms are affected by this, as well
(e.g. Trillian, native MSN Messenger, etc.) or just Adiumx and
Pidgin?

http://www.zerodayinitiative.com/advisories/ZDI-08-054/

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFItxSXq1pz9mNUZTMRAi6YAKD+N47CR9rpgXvrfvoyXq6cWRuWJwCfQiDd
zIKn4kMGjVErSOB4qdokUp4=
=LImp
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
Engineering Architecture for the Internet
fergdawg(at)netzero.net
ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.




-- 
http://www.goldwatches.com/
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: