Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in Melange Chat System 1.10 allows remote attackers to cause a denial of service (chat server crash) and possibly execute arbitrary code via the msgText buffer in the chat_InterpretData function, as demonstrated via a long Nick (nickname) request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Melange聊天系统msgText远程缓冲区溢出漏洞
Vulnerability Description
Melange是一款Christian Walter开发的聊天服务程序。 Melange中的'chat_InterpretData()'函数对用户提交的数据缺少正确的边界缓冲区检查,远程攻击者可以利用这个漏洞对服务进行缓冲区溢出,可能以Melange进程权限在系统上执行任意指令。 在Melange系统中的interpret.c文件中的chat_InterpretData()函数55行: sprintf(msgText,"<%d-%d, %s>:%s",mClient[sender].channel,sen
CVSS Information
N/A
Vulnerability Type
N/A