>> ICQ Personal Status Manager Remote Code Execution Vulnerability
Title : ICQ Personal Status Manager Remote Code Execution Vulnerability VUPEN ID : VUPEN/ADV-2008-1299 CVE ID : CVE-2008-1920
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-04-21
Technical Description
A vulnerability has been identified in ICQ, which could be exploited by attackers to cause a denial of service or compromise an affected system. This issue is caused by a buffer overflow error in the Personal Status Manager feature when processing a specially crafted status message, which could be exploited by attackers to execute arbitrary code via a specially crafted message.