CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Buffer overflow in the XML parser in Trillian 3.1.9.0, and possibly earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DTD file. |
2Cerulean Studios Ceruleanstudios4Trillian TrillianTrillian Pro+1 moreApr 23, 2026 Dec 10, 2008 N/A· v4 N/A· v3 10.0 HIGH· v2 Heap-based buffer overflow in the XML parser in the AIM plugin in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a malformed XML tag. |
2Cerulean Studios Ceruleanstudios4Trillian TrillianTrillian Pro+1 moreApr 23, 2026 Dec 10, 2008 N/A· v4 N/A· v3 10.0 HIGH· v2 Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID." |
2Cerulean Studios Ceruleanstudios4Trillian TrillianTrillian Pro+1 moreApr 23, 2026 Dec 10, 2008 N/A· v4 N/A· v3 10.0 HIGH· v2 Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing." |
Stack-based buffer overflow in AIM.DLL in Cerulean Studios Trillian before 3.1.10.0 allows user-assisted remote attackers to execute arbitrary code via a long attribute value in a FONT tag in a message. |