Konversation IRC Client Multiple Remote Vulnerabilities

No exploit is required to leverage these issues. The following proof of concepts have been provided:

When an unsuspecting user joins a channel named #%n/quit%n and the Part Button their client will quit.

When an unsuspecting user enters a channel named #`kwrite` and executes the /uptime command, the kwrite application will be activated.


 

Privacy Statement
Copyright 2010, SecurityFocus