Full Disclosure mailing list archives

ICQ 6 protocol bug?


From: "Darren Reed" <darrenr+full-disclosure () fastmail net>
Date: Fri, 13 Feb 2009 10:01:00 +0100

For some time now I've seen ICQ receive messages, from unknown people,
occassionally make the client "core dump'. The messages are often
gibberish - more like the ASCII characters from someone trying to make
it execute something it shouldn't.

My interpretation of this is unknown parties are trying to exploit a bug
in ICQ6 (it may work on Win2k or Win98...) but I might be wrong. I need
to fire up wireshark to see what actually get sent.

Has anyone else seen this?
Or have details on what the hack is?

Google found some hits for "old bugs", older than ICQ6....

Darren
-- 
  Darren Reed
  darrenr () reed wattle id au

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: