1005831vdb entry
http://securitytracker.com/id?1005831 CVE-2002-1351
Melange Chat Server 1.10 - Remote Buffer Overflow
Record summary
CVE-2002-1351 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in Melange Chat System 1.10 allows remote attackers to cause a denial of service (chat server crash) and possibly execute arbitrary code via the msgText buffer in the chat_InterpretData function, as demonstrated via a long Nick (nickname) request.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMelange Chat Server 1.10 - Remote Buffer OverflowExploitDB exploitby innerphobiaNot analyzed1 file
References
520021216 Melange Chat System Remote Buffer OverflowThird-party advisory
http://www.idefense.com/application/poi/display?id=33&type=vulnerabilities&flashstatus=false 6477vdb entry
http://www.securityfocus.com/bid/6477 melange-msgtext-chatinterpretdata-bo(10939)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/10939 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1351