This script is Copyright (C) 2009-2012 Tenable Network Security, Inc.
Synopsis :
The detected instant messenger client is affected by multiple buffer
overflow vulnerabilities.
Description :
AOL AIM is affected by multiple buffer overflow vulnerabilities because
it fails to perform adequate boundary checks on user-supplied data.
Successful exploits may allow attackers to execute arbitrary code with
the privileges of the user running the software or cause an application
crash.
See also :
http://www.zerodayinitiative.com/advisories/ZDI-08-097/
http://www.zerodayinitiative.com/advisories/ZDI-08-098/
Solution :
Upgrade to AOL AIM 6.8.7.7 or later.
Risk factor :
High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 6.9
(CVSS2#E:U/RL:OF/RC:ND)
Public Exploit Available : false