VYPR
Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026

CVE-2004-2304

CVE-2004-2304

Description

Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.

Affected products

7
  • cpe:2.3:a:cerulean_studios:trillian:0.71:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:cerulean_studios:trillian:0.71:*:*:*:*:*:*:*
    • cpe:2.3:a:cerulean_studios:trillian:0.725:*:*:*:*:*:*:*
    • cpe:2.3:a:cerulean_studios:trillian:0.73:*:*:*:*:*:*:*
    • cpe:2.3:a:cerulean_studios:trillian:0.74:*:*:*:*:*:*:*
  • cpe:2.3:a:cerulean_studios:trillian_pro:1.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:cerulean_studios:trillian_pro:1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cerulean_studios:trillian_pro:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cerulean_studios:trillian_pro:2.01:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.