psyBNC 2.3 beta and earlier allows remote attackers to spoof encrypted, trusted messages by sending lines that begin with the "[B]" sequence, which makes the message appear legitimate.
Link | Tags |
---|---|
http://online.securityfocus.com/archive/1/251832 | mailing list vendor advisory |
http://marc.info/?l=bugtraq&m=101173478806580&w=2 | mailing list |
http://www.securityfocus.com/bid/3931 | vdb entry patch vendor advisory |
http://www.iss.net/security_center/static/7985.php | vdb entry patch vendor advisory |