QIP 2005 build 8082 allows remote attackers to cause a denial of service (CPU consumption and application hang) via a crafted Rich Text Format (RTF) ICQ message, as demonstrated by an {\rtf\pict\&&} message. NOTE: the vulnerability may be in Sergey Tkachenko TRichView. If so, then this should not be treated as a vulnerability in QIP.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/33609 | vdb entry exploit |
http://www.osvdb.org/51755 | vdb entry |
http://www.securityfocus.com/archive/1/500656/100/0/threaded | mailing list |
http://secunia.com/advisories/33851 | third party advisory vendor advisory |