Vulnerabilities > AOL > Instant Messenger > Critical

DATE CVE VULNERABILITY TITLE RISK
2009-08-03 CVE-2009-2404 Buffer Errors vulnerability in Mozilla Network Security Services 3.12.3
Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.
network
mozilla aol gnome pidgin CWE-119
critical
9.3
2004-11-23 CVE-2004-0636 Unspecified vulnerability in AOL Instant Messenger 5.5/5.5.3415Beta/5.5.3595
Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote attackers to execute arbitrary code via a long Away message.
network
low complexity
aol
critical
10.0
2002-01-31 CVE-2002-0005 Remote Buffer Overflow in AOL Instant Messenger
Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via a long argument in a game request (AddGame).
network
low complexity
aol
critical
10.0