lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <ea6ab5382fefaeee667c418adab9667b@www.c0replay.net> Date: Sun Mar 12 11:10:25 2006 From: gat0r at toughguy.net (gat0r) Subject: Advisory 2006-03-11 Heap Overflow in AOL Client Software Advisory 2006-03-11 Heap Overflow in AOL Client Software I. BACKGROUND Advisory marked for immediate release. II. DESCRIPTION It is possible to make AOL Client Software crash or run arbitrary code by the use of malformed input. III. HISTORY This advisory has no history. IV. WORKAROUND There are no known workarounds. V. VENDOR RESPONSE AOL Client Software has not commented on this issue. VI. CVE INFORMATION The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-251293 to this issue. APPENDIX A. - Vendor Information http://www.aol.com APPENDIX B. - References NONE CONTACT: *gat0r bantown@...m.la *1-888-LOL-WHAT *CISSP GSAE CCE CEH CSFA GREM SSP-CNSA SSP-MPA GIPS GHTQ GWAS