Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

mIRC Scripting ASCTime Buffer Overflow Vulnerability

mIRC is a chat client for the IRC protocol, designed for Microsoft Windows based operating systems. mIRC includes support for a scripting language.

A buffer overflow vulnerability has been reported in the $asctime identifier, a function in the mIRC scripting language. The error lies in the handling over oversized format specifier strings.

Exploitation will rely on a script passing untrusted input to this function. Reportedly, no such script is included in the default installation of mIRC.







 

Privacy Statement
Copyright 2008, SecurityFocus