Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v10.5 - Exploits Update (Fri Jul 30 2010)

Pidgin MSNSLP Arbitrary Write Exploit Update

Exploits/Client Side  [Windows]




• Fri Jul 30 2010
The vulnerability is caused due to boundary errors in libpurple.dll within the processing of MSNSLP messages. This can be exploited to cause an arbitrary write without user interaction. This module updates the MSN library, because of minor changes in the handling of the HTTP encapsulation of the MSN protocol within the Microsoft MSN server.

Exploits Vulnerabiltiy: CVE-2009-2694



< Back to Product Updates