Critical errors found in Yahoo Messenger and Trillian
Yahoo! instant messengers Messenger and Trillian have detected critical errors, using which a hacker-attacker can execute the execution of the program code on the attacked machine. In this way, you can “put” a spam bot or Trojan on a user’s computer using a buffer overflow error.
Development companies (Yahoo and Cerulean) have not yet commented on this event. No “patches” were released to eliminate these vulnerabilities.
In connection with the incident, the US-CERT organization, which published an official report, said that the vulnerability was found in Trillian 3.1.6.0 and was assigned the status of "highly critical". ')
via InfoWorld