Full Disclosure mailing list archives
Re: ICQ 6 protocol bug?
From: James Matthews <nytrokiss () gmail com>
Date: Sat, 14 Feb 2009 23:26:48 +0200
ICQ is known to have a few remote bugs. I use meebo.com instead of a client due to these issues. On Fri, Feb 13, 2009 at 5:57 PM, Leon Juranic <leon.juranic () infigo hr>wrote:
Hi, It could be quite possible, although, I can't confirm it. But, after analysis of recent ICQ6 vulnerability, I'm under impression that there are more similar vulnerabilities in it. ICQ6 vulnerability: http://www.infigo.hr/hr/in_focus/advisories/INFIGO-2008-04-08 Regards, Leon Juranic -----Original Message----- From: full-disclosure-bounces () lists grok org uk [mailto:full-disclosure-bounces () lists grok org uk] On Behalf Of Darren Reed Sent: Friday, February 13, 2009 10:01 AM To: full-disclosure () lists grok org uk Subject: [Full-disclosure] ICQ 6 protocol bug? For some time now I've seen ICQ receive messages, from unknown people, occassionally make the client "core dump'. The messages are often gibberish - more like the ASCII characters from someone trying to make it execute something it shouldn't. My interpretation of this is unknown parties are trying to exploit a bug in ICQ6 (it may work on Win2k or Win98...) but I might be wrong. I need to fire up wireshark to see what actually get sent. Has anyone else seen this? Or have details on what the hack is? Google found some hits for "old bugs", older than ICQ6.... Darren -- Darren Reed darrenr () reed wattle id au _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
-- http://www.astorandblack.com
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- ICQ 6 protocol bug? Darren Reed (Feb 13)
- Re: ICQ 6 protocol bug? Leon Juranic (Feb 14)
- Re: ICQ 6 protocol bug? James Matthews (Feb 14)
- Re: ICQ 6 protocol bug? Valdis . Kletnieks (Feb 14)
- Re: ICQ 6 protocol bug? sr. (Feb 14)
- Re: ICQ 6 protocol bug? Darren Reed (Feb 18)
- Re: ICQ 6 protocol bug? James Matthews (Feb 14)
- Re: ICQ 6 protocol bug? Leon Juranic (Feb 14)
- <Possible follow-ups>
- Re: ICQ 6 protocol bug? bobby . mugabe (Feb 15)
- Re: ICQ 6 protocol bug? Morning Wood (Feb 15)