Summary
The remote host is missing an update to micq
announced via advisory DSA 012-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20012-1
Insight
PkC has reported that there is a buffer overflow in sprintf() in micq versions 0.4.6, that allows to a remote attacker able to sniff packets to the ICQ server to execute arbitrary code on the victim system.
We recommend you upgrade your micq package immediately.
Severity
Classification
-
CVE CVE-2001-0233 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities