Critical Trillian, WinAmp Security Flaws

By admin | May 2, 2007
If you are new here, you may want to subscribe to our feed.

TrillianHeads up for two newly flagged issues if you use either the online instant messaging program “Trillian”, and the media player “WinAmp”. These are +1-day exploits, as they we’re flagged yesterday by iDefense and Secunia, so if you have Trillian and use IRC chat, Cerulean Studios has already released an update for Trilly. WinAmp has a security flaw that allows for exploitation through a specially crafted MP4 file. As of this posting, WinAmp does not have a patch out for the security vulnerability. Full details of the two sets of exploits follow…

Trillian Flaws:

  • Remote exploitation of multiple vulnerabilities in the Internet Relay Chat (IRC) module of Cerulean Studios’ Trillian could allow for the interception of private conversations or execution of code as the currently logged on user.
  • When handling long CTCP PING messages containing UTF-8 characters, it is possible to cause the Trillian IRC client to return a malformed response to the server. This malformed response is truncated and is missing the terminating newline character. This could allow the next line sent to the server to be improperly sent to an attacker.
  • When a user highlights a URL in an IRC message window Trillian copies the data to an internal buffer. If the URL contains a long string of UTF-8 characters, it is possible to overflow a heap based buffer corrupting memory in a way that could allow for code execution.
  • A heap overflow can be triggered remotely when the Trillian IRC module receives a message that contains a font face HTML tag with the face attribute set to a long UTF-8 string.

WinAmp Flaw:

  • A WinAmp vulnerability allows a specific MP4 file to cause memory corruption and allow for the remote execution of arbitraty code. This is caused by an error in handling MP4 coding. Exploit code has already been circulated around the Internet.

The WinAmp flaw is much newer, as code for this exploit was released (I’ve taken a look at it) on 4/30/2007. So, if you have either of these problems and are at risk, I suggest either patching Trillian or switch to WMP or iTunes for MP4 playback at the moment.



Related Posts:

“Extremely Critical” Winamp Security Issue
That would be straight from the horse's mouth, so to speak. Secunia issued an extremely critical security bulletin for...

Extremely Critical Mac OS X _MACOSX Vulnerability
Secunia has issued another very critical security warning. This vulnerability has been confirmed on a fully patched Mac OS X...

Wine Brings Windows Apps to Mac OS X
An absolutely amazing program that I found on linux is working on a version for Mac. The program is...

Apple Ignored Critical QuickTime Exploit
It seems that security in this age is very hard to keep up with. There are endless exploits for...

WordPress Guest Account Security Exploit
I don't believe there is anything in the wild, but Dr. Dave (of famed Spam Karma - of which I'm...

Leave a Comment

If you would like to make a comment, please fill out the form below.

Name (required)

Email (required)

Website

Comments

© 2007 PaulTech Network, - Daily Blog Tips Themes