Pierre Nogues

4 exploits Active since May 2009
CVE-2009-1376 EXPLOITDB WORKING POC
Pidgin < 2.5.6 - Remote Code Execution via Malformed SLP Message
Multiple integer overflows in the msn_slplink_process_msg functions in the MSN protocol handler in (1) libpurple/protocols/msn/slplink.c and (2) libpurple/protocols/msnp9/slplink.c in Pidgin (formerly Gaim) before 2.5.6 on 32-bit platforms allow remote attackers to execute arbitrary code via a malformed SLP message with a crafted offset value, leading to buffer overflows. NOTE: this issue exists because of an incomplete fix for CVE-2008-2927.
CVE-2009-2694 EXPLOITDB WORKING POC
Adium < 1.3.5 and Pidgin < 2.5.8 - Remote Code Execution via Crafted MSNSLP Messages
The msn_slplink_process_msg function in libpurple/protocols/msn/slplink.c in libpurple, as used in Pidgin (formerly Gaim) before 2.5.9 and Adium 1.3.5 and earlier, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) by sending multiple crafted SLP (aka MSNSLP) messages to trigger an overwrite of an arbitrary memory location. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2009-1376.
EIP-2026-114989 EXPLOITDB bash WORKING POC
BitComet 1.19 - Remote Denial of Service
CVE-2010-1147 EXPLOITDB python WORKING POC
Open Direct Connect Hub 0.8.1 - Authenticated Stack-Based Buffer Overflow via MyINFO Message
Stack-based buffer overflow in Open Direct Connect Hub (aka Open DC Hub or OpenDCHub) 0.8.1 allows remote authenticated users to execute arbitrary code via a long MyINFO message.