5

CVE-2002-1953

Exploit

Heap-based buffer overflow in the goim handler of AOL Instant Messenger (AIM) 4.4 through 4.8.2616 allows remote attackers to cause a denial of service (crash) via escaping of the screen name parameter, which triggers the overflow when the user selects "Get Info" on the buddy.

Data is provided by the National Vulnerability Database (NVD)
AolInstant Messenger Version4.4
AolInstant Messenger Version4.5
AolInstant Messenger Version4.6
AolInstant Messenger Version4.7
AolInstant Messenger Version4.7.2480
AolInstant Messenger Version4.8.2616
AolInstant Messenger Version4.8.2646
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.66% 0.852
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P