AIM: Away Message Overflow
This signature detects abnormally large AIM messages containing format string characters . Malicious users can craft messages to overflow a buffer on some Instant Messenger clients. A successfull attack can allow code execution.
Extended Description
Gaim is prone to multiple vulnerabilities affecting the AIM and ICQ protocols. These issues may allow remote attackers to trigger a buffer overflow or a denial-of-service condition. All versions of Gaim 1.x are considered vulnerable at the moment.
Affected Products
Suse linux_desktop
References
BugTraq: 14531
CVE: CVE-2005-2103
URL: http://rhn.redhat.com/errata/RHSA-2005-589.html http://www.novell.com/linux/security/advisories/2005_19_sr.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Red_hat
Conectiva
Suse
Gentoo
Rob_flynn
Sgi
Slackware
Ubuntu
Mandriva
7.5