ITS Homepage Click here for text version of ITS homepage
Contact UAlbany Directories Calendars & Schedules Visitors Site Index Search
Admissions Academics Research IT Services Libraries Athletics
alerts_tag

*UNPATCHED* vulnerability in ICQ


ALARM Group ALERT - click for a description of ALARM, The Computing Alert System


Alert Number:  022808-01
Alert Date:  02/28/08
Alert Title:  *UNPATCHED* vulnerability in ICQ
Update-to:  None.
OS/Platform/Application:  ICQ Version 6 (all versions potentially vulnerable)
Category:  ALERT
Severity:  MEDIUM
Attention:  System Administrators, Desktop Support Personnel, ICQ users

Summary:  Multiple Internet Security Agencies are reporting the existence of a vulnerability in the popular ICQ communications program.  The most likely method of exploit for this vulnerability is the sending of a maliciously-crafted message to a vulnerable user system.  If successful, the exploit could result in a range of negative outcomes ranging from application crash to total system takeover.  At the time of this writing (9:00 AM 2/28/08) a patch has not yet been made available from the vendor to address this vulnerability.

Recommended Actions:  System administrators, support personnel and ICQ users are encouraged to read the security advisories (safe links provided below) for more information about this vulnerability and to check frequently for an update or patch from ICQ.

Readers are encouraged to share this alert with family, friends, and associates who may use ICQ on their home computers.

ITS Actions:  N/A

Resources:

Secunia Advisory (includes workaround suggestion):
http://secunia.com/advisories/29138/

FrSirt Advisory:
http://www.frsirt.com/english/advisories/2008/0701

 

BLANKABCDEFGHIJKLMBLANK
BLANKNOPQRSTUVWXYZBLANK
CHOOSE FROM the ITS Site Index

GO TO an ITS Group

Information Technology Services
University at Albany, SUNY
1400 Washington Avenue
Albany, NY 12222
ITS Service Centers:  518-442-4000
 
University at Albany Home Page
Contact UAlbany | Directories | Calendars | Visitors | Site Index | Search
Admissions | Academics | Research | IT Services | Libraries | Athletics

Internet Privacy Policy              IT Policies