Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

AOL Instant Messenger Getfile Screenname Buffer Overrun Vulnerability

A remotely exploitable buffer overrun vulnerability has been reported in AOL Instant Messenger (AIM). Attackers may exploit this by enticing a user of the client to follow a maliciously constructed AIM URI (using the AIM protocol handler) that performs a "getfile" operation with an overly long value as the screenname.







 

Privacy Statement
Copyright 2009, SecurityFocus