Critical Trillian, WinAmp Security Flaws


TrillianHeads up for two newly flagged issues if you use either the online instant messaging program “Trillian”, and the media player “WinAmp”. These are +1-day exploits, as they we’re flagged yesterday by iDefense and Secunia, so if you have Trillian and use IRC chat, Cerulean Studios has already released an update for Trilly. WinAmp has a security flaw that allows for exploitation through a specially crafted MP4 file. As of this posting, WinAmp does not have a patch out for the security vulnerability. Full details of the two sets of exploits follow…

Trillian Flaws:

  • Remote exploitation of multiple vulnerabilities in the Internet Relay Chat (IRC) module of Cerulean Studios’ Trillian could allow for the interception of private conversations or execution of code as the currently logged on user.
  • When handling long CTCP PING messages containing UTF-8 characters, it is possible to cause the Trillian IRC client to return a malformed response to the server. This malformed response is truncated and is missing the terminating newline character. This could allow the next line sent to the server to be improperly sent to an attacker.
  • When a user highlights a URL in an IRC message window Trillian copies the data to an internal buffer. If the URL contains a long string of UTF-8 characters, it is possible to overflow a heap based buffer corrupting memory in a way that could allow for code execution.
  • A heap overflow can be triggered remotely when the Trillian IRC module receives a message that contains a font face HTML tag with the face attribute set to a long UTF-8 string.

WinAmp Flaw:

  • A WinAmp vulnerability allows a specific MP4 file to cause memory corruption and allow for the remote execution of arbitraty code. This is caused by an error in handling MP4 coding. Exploit code has already been circulated around the Internet.

The WinAmp flaw is much newer, as code for this exploit was released (I’ve taken a look at it) on 4/30/2007. So, if you have either of these problems and are at risk, I suggest either patching Trillian or switch to WMP or iTunes for MP4 playback at the moment.


Related Posts:

  • No Related Posts
You can leave a response, or trackback from your own site.

Leave a Reply

Powered by WordPress