First published: Sat Oct 06 2001(Updated: )
AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application hang or crash) via a buddy icon GIF file whose length and width values are larger than the actual image data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
AOL AIM Triton | =4.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1417 has a severity rating classified as a denial of service vulnerability.
To fix CVE-2001-1417, upgrade to a later version of AOL Instant Messenger beyond 4.7.
CVE-2001-1417 affects AOL Instant Messenger version 4.7.
CVE-2001-1417 allows attackers to cause application hangs or crashes through specially crafted buddy icons.
While the specific vulnerability may no longer be exploitative due to the age of AOL Instant Messenger, it highlights important security lessons in handling input data.