CVE-2008-2408

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
23/05/2008
Last modified:
09/04/2025

Description

Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in an IMG tag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ceruleanstudios:trillian_pro:*:*:*:*:*:*:*:* 3.1.9.0 (including)