5

CVE-2002-1953

Exploit

Heap-based buffer overflow in the goim handler of AOL Instant Messenger (AIM) 4.4 through 4.8.2616 allows remote attackers to cause a denial of service (crash) via escaping of the screen name parameter, which triggers the overflow when the user selects "Get Info" on the buddy.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AolInstant Messenger Version4.4
AolInstant Messenger Version4.5
AolInstant Messenger Version4.6
AolInstant Messenger Version4.7
AolInstant Messenger Version4.7.2480
AolInstant Messenger Version4.8.2616
AolInstant Messenger Version4.8.2646
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.66% 0.852
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P