邪恶八进制信息安全团队技术讨论组's Archiver

EvilOctal 2005-2-5 00:50

[转载]DoS in LANChat Pro Revival 1.666c

信息来源:[url]www.autistici.org[/url]

Donato Ferrante

Application: LANChat Pro Revival
[url]http://lanchat.republika.pl/[/url]

Version: 1.666c

Bug: Denial Of Service

Date: 03-Feb-2005

Author: Donato Ferrante
e-mail: fdonato_at_autistici.org
web: [url]www.autistici.org/fdonato[/url]

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

1. Description
2. The bug
3. The code
4. The fix

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

----------------
1. Description:
----------------

Vendor's Description:

"LANChat Pro is a local area network chat program with multicolor,
custom skins and sounds support, WAN operation and file transfer
and many other options."

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

------------
2. The bug:
------------

The program is unable to manage malformed data into udp packet, in fact
it crashes.

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

-------------
3. The code:
-------------

To test the vulnerability:

[url]http://www.eviloctal.com/forum/read.php?tid=7509[/url]

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

------------
4. The fix:
------------

No fix.
LANChat Pro Revival is no longer supported.

页: [1]
© 1999-2008 EvilOctal Security Team