First published: Tue Oct 02 2001(Updated: )
AOL Instant Messenger (AIM) 4.7.2480 and earlier allows remote attackers to cause a denial of service (application crash) via an instant message that contains a large amount of "<!--" HTML comments.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
AOL AIM Triton | =4.0 | |
AOL AIM Triton | =4.1 | |
AOL AIM Triton | =4.2 | |
AOL AIM Triton | =4.3 | |
AOL AIM Triton | =4.3.2229 | |
AOL AIM Triton | =4.4 | |
AOL AIM Triton | =4.5 | |
AOL AIM Triton | =4.6 | |
AOL AIM Triton | =4.7 | |
AOL AIM Triton | =4.7.2480 | |
Cerulean Studios Trillian | =0.6351 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1419 is classified as a denial of service vulnerability which can cause the application to crash.
To fix CVE-2001-1419, users should upgrade to AOL Instant Messenger version 4.7.2490 or later.
CVE-2001-1419 affects AOL Instant Messenger versions 4.7.2480 and earlier.
Yes, CVE-2001-1419 can be exploited remotely through an instant message containing HTML comments.
The impact of CVE-2001-1419 is that it can lead to application crashes, resulting in potential service interruptions.