|
mIRC Scripting ASCTime Buffer Overflow Vulnerability
mIRC is a chat client for the IRC protocol, designed for Microsoft Windows based operating systems. mIRC includes support for a scripting language. A buffer overflow vulnerability has been reported in the $asctime identifier, a function in the mIRC scripting language. The error lies in the handling over oversized format specifier strings. Exploitation will rely on a script passing untrusted input to this function. Reportedly, no such script is included in the default installation of mIRC. |
|
|
Privacy Statement |