lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri, 13 Feb 2009 16:57:12 +0100
From: "Leon Juranic" <leon.juranic@...igo.hr>
To: <full-disclosure@...ts.grok.org.uk>
Subject: Re: ICQ 6 protocol bug?


Hi,

It could be quite possible, although, I can't confirm it. But, after
analysis of recent ICQ6 vulnerability, I'm under impression that there are
more similar vulnerabilities in it.

ICQ6 vulnerability:
http://www.infigo.hr/hr/in_focus/advisories/INFIGO-2008-04-08


Regards,
Leon Juranic

-----Original Message-----
From: full-disclosure-bounces@...ts.grok.org.uk
[mailto:full-disclosure-bounces@...ts.grok.org.uk] On Behalf Of Darren Reed
Sent: Friday, February 13, 2009 10:01 AM
To: full-disclosure@...ts.grok.org.uk
Subject: [Full-disclosure] ICQ 6 protocol bug?

For some time now I've seen ICQ receive messages, from unknown people,
occassionally make the client "core dump'. The messages are often
gibberish - more like the ASCII characters from someone trying to make
it execute something it shouldn't.

My interpretation of this is unknown parties are trying to exploit a bug
in ICQ6 (it may work on Win2k or Win98...) but I might be wrong. I need
to fire up wireshark to see what actually get sent.

Has anyone else seen this?
Or have details on what the hack is?

Google found some hits for "old bugs", older than ICQ6....

Darren
-- 
  Darren Reed
  darrenr@...d.wattle.id.au

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ