Advisory + x Thu Mar 16 14:09:37 EST 2006 x + Integer Overflow in AOL Client Software +++++++++++++++++++++++++ o/ å BACKGROUND +++++++++++++++++++++++++ This product had no background commentary regarding the issue indentified. +++++++++++++++++++++++++ å \o WORKAROUND +++++++++++++++++++++++++ There are no workarounds. +++++++++++++++++++++++++ o/ å VENDOR RESPONSE +++++++++++++++++++++++++ AOL Client Software has offered no identified explanation about this problem at hand. +++++++++++++++++++++++++ å \o CVE INFORMATION +++++++++++++++++++++++++ The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-375471 to this issue +++++++++++++++++++++++++ APPENDIX A VENDOR INFORMATION +++++++++++++++++++++++++ http://www.aol.com +++++++++++++++++++++++++ APPENDIX B REFERENCES +++++++++++++++++++++++++ RFC 3369 +++++++++++++++++++++++++ CONTACT +++++++++++++++++++++++++ Damian Menscher [EMAIL PROTECTED] 1-888-565-9428 BEWARE THE JIZZTAPO!!! .. _ .' `. /\) / / / / /\ \ \ / \ _ \ \/ /\ \ (/\ \ / \ \ \ \ / \ (Y ) \ \/ /\ \ "" \ / \ \ \/ / / / / ( Y) "" CCE CEH SSP-MPA SSCP _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
