|
AOL Instant Messenger Getfile Screenname Buffer Overrun Vulnerability
A remotely exploitable buffer overrun vulnerability has been reported in AOL Instant Messenger (AIM). Attackers may exploit this by enticing a user of the client to follow a maliciously constructed AIM URI (using the AIM protocol handler) that performs a "getfile" operation with an overly long value as the screenname. |
|
|
Privacy Statement |