CVE-2001-1421: Medium severity AOL Instant Messenger vulnerability
Published Oct 6, 2001
·Updated
AOL Instant Messenger (AIM) 4.7 and earlier allows remote attackers to cause a denial of service (application crash) via a large number of different fonts followed by an HTML HR tag.
Affected Software
1 affected component
AOL Instant Messenger<=4.7
Event History
Oct 6, 2001
CVE Published
04:00 AM
Mar 20, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1421?
CVE-2001-1421 has a moderate severity level due to its ability to cause denial of service by crashing the application.
2
How do I fix CVE-2001-1421?
To fix CVE-2001-1421, you should upgrade to a version of AOL Instant Messenger newer than 4.7.
3
What software is affected by CVE-2001-1421?
CVE-2001-1421 affects AOL Instant Messenger versions 4.7 and earlier.
4
What kind of attack does CVE-2001-1421 describe?
CVE-2001-1421 describes a denial of service attack that crashes AOL Instant Messenger.
5
Can CVE-2001-1421 be exploited remotely?
Yes, CVE-2001-1421 can be exploited remotely by sending a malicious message with a specific combination of fonts and HTML tags.