CVE-2006-6442: Buffer Overflow
Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used in America Online (AOL) 7.0 4114.563, 8.0 4129.230, and 9.0 Security Edition 4156.910, and possibly other products, allows remote attackers to execute arbitrary code via a long ClientId argument.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6442?
CVE-2006-6442 is classified as a high-severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2006-6442?
You can fix CVE-2006-6442 by updating the AOL client software to a version that is not affected by this vulnerability.
Which versions of AOL are affected by CVE-2006-6442?
CVE-2006-6442 affects AOL client software versions 7.0, 8.0, and 9.0 Security Edition.
What type of vulnerability is CVE-2006-6442?
CVE-2006-6442 is a stack-based buffer overflow vulnerability.
Can CVE-2006-6442 be exploited remotely?
Yes, CVE-2006-6442 can be exploited remotely by attackers to execute arbitrary code.