Full Disclosure mailing list archives

-Advisory- + =Thu Mar 16 14:18:44 EST 2006= + Off-by-one in AOL Client Software


From: Joel Esler <eslerj () gmail com>
Date: Thu, 16 Mar 2006 19:18:51 +0000 (GMT)




-Advisory- + =Thu Mar 16 14:18:44 EST 2006= + Off-by-one in AOL Client Software




++++++++++++++++++++++++++++++++++++++++++
I. BACKGROUND
++++++++++++++++++++++++++++++++++++++++++
There was no background information about the issue at hand.
++++++++++++++++++++++++++++++++++++++++++
II. DESCRIPTION
++++++++++++++++++++++++++++++++++++++++++
It is possible to make AOL Client Software crash by the use of malformed input.

++++++++++++++++++++++++++++++++++++++++++
III. VENDOR RESPONSE
++++++++++++++++++++++++++++++++++++++++++
AOL Client Software is presented no identified explanation about this vulnerability at hand.
++++++++++++++++++++++++++++++++++++++++++
IV. CVE INFORMATION
++++++++++++++++++++++++++++++++++++++++++
The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-602444 to this issue

++++++++++++++++++++++++++++++++++++++++++
APPENDIX A VENDOR INFORMATION
++++++++++++++++++++++++++++++++++++++++++
http://www.aol.com

++++++++++++++++++++++++++++++++++++++++++
APPENDIX B REFERENCES
++++++++++++++++++++++++++++++++++++++++++
RFC 2670

++++++++++++++++++++++++++++++++++++++++++
CONTACT
++++++++++++++++++++++++++++++++++++++++++
Joel Esler eslerj () gmail com

CCE SSP-CNSA SSP-MPA GIPS GWAS CAP 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: