Vulnerability Development mailing list archives

Re: AIM bug or feature


From: jlintz () OPTONLINE NET (Justin Lintz)
Date: Wed, 10 May 2000 06:47:17 -0400


Another thing about their direct connection feature is your allowed to type
without a limit of sending ims.  Could that lead to a possible DoS attack?

       Justin Lintz
· jlintz () optonline net ·

-----Original Message-----
From: VULN-DEV List [mailto:VULN-DEV () SECURITYFOCUS COM]On Behalf Of jeff D
Sent: Tuesday, May 09, 2000 11:57 PM
To: VULN-DEV () SECURITYFOCUS COM
Subject: AIM bug or feature

I was experimenting with AIM's direct connection feature and i would like to
know if it is a feature or a bug that once you are connected(like DCC chat
on IRC) that you can logoff of AIM and still be able to talk to that person
and send images.  Also if it is a bug, does anybody know of any
vulnerabilities or anything besides being able to get a persons IP &
hostmask.

Jeff D


Current thread: