Heap-based buffer overflow in the goim handler of AOL Instant Messenger (AIM) 4.4 through 4.8.2616 allows remote attackers to cause a denial of service (crash) via escaping of the screen name parameter, which triggers the overflow when the user selects "Get Info" on the buddy.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/5492 | vdb entry exploit |
http://online.securityfocus.com/archive/1/288980 | mailing list |
http://www.iss.net/security_center/static/9950.php | vdb entry |