CVE-2000-0190: Medium severity AOL Instant Messenger vulnerability
AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed ASCII value.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
AOL Instant Messenger (AIM)from your environment.Uninstall or disable the AOL Instant Messenger (AIM) client, or stop using it, until the vendor issues a patch addressing the malformed-ASCII message denial-of-service vulnerability.
- Compensating control
Block or restrict AIM/instant-messaging traffic at the network perimeter (firewall, ACLs, or proxy) and prevent receipt of messages from untrusted networks/peers until a vendor fix is available.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0190?
CVE-2000-0190 is classified as a denial of service vulnerability.
How do I fix CVE-2000-0190?
To mitigate CVE-2000-0190, users should upgrade to a version of AOL Instant Messenger later than 3.5.
Which versions of AOL Instant Messenger are affected by CVE-2000-0190?
CVE-2000-0190 affects AOL Instant Messenger clients up to and including version 3.5.
How does CVE-2000-0190 exploit the AOL Instant Messenger client?
CVE-2000-0190 exploits the AOL Instant Messenger client by sending messages containing malformed ASCII values that can lead to a denial of service.
What impact does CVE-2000-0190 have on users of AOL Instant Messenger?
The impact of CVE-2000-0190 is that it can disrupt service, making the AOL Instant Messenger client unusable.