Who uses forums anymore?
0 Members and 2 Guests are viewing this topic.
As I submitted to full disclosure:"I have discovered that there is a buffer overrun vulnerability in AOL's Instant Messenger program. I have only tested this on version 5.9.3861. The problem causes a minimum of a program crash. I am not sure as to the posibility of shellcode execution.The vulnerability can be exploited by supplying an overly large username from which to obtain "buddy info."If you are unsure as to what I am talking about, I can post a screenshot."Well, I made a Macromedia Captivate-made video of it. http://www.dotshell.net/aim.swf. What I am thinking is that a program can be
Who gives a damn? I fuck sheep all the time.
And yes, male both ends. There are a couple lesbians that need a two-ended dildo...My router just refuses to wear a strap-on.
[17:32:45] * xar sets mode: -oooooooooo algorithm ban chris cipher newby stdio TehUser tnarongi|away vursed warz[17:32:54] * xar sets mode: +o newby[17:32:58] <xar> new rule[17:33:02] <xar> me and newby rule all
Quote from: CrAz3D on June 30, 2008, 10:38:22 amI'd bet that you're currently bloated like a water ballon on a hot summer's day.That analogy doesn't even make sense. Why would a water balloon be especially bloated on a hot summer's day? For your sake, I hope there wasn't too much logic testing on your LSAT.
I'd bet that you're currently bloated like a water ballon on a hot summer's day.
I'd personally do as Joe suggests
You might be right about that, Joe.
I don't know why it's in media center... but will it work that that aim command thingy, if there is one to get profile.No there isn't... so kinda useless ;P ?
This is a retarded reason to say AIM sucks. Who is going to sit there and type fake screennames of that length into a buddy lookup anyway? Theres no way to remotely expoit this. Garbage.
Quote from: Krazed on February 04, 2006, 10:28:42 amThis is a retarded reason to say AIM sucks. Who is going to sit there and type fake screennames of that length into a buddy lookup anyway? Theres no way to remotely expoit this. Garbage. It could be a real screen name, too. It just has to break AIM. ! I feel like trying it.
[20:21:13] xar: i was just thinking about the time iago came over here and we made this huge bomb and light up the sky for 6 min[20:21:15] xar: that was funny
Quote from: deadly7 on February 04, 2006, 03:26:21 pmQuote from: Krazed on February 04, 2006, 10:28:42 amThis is a retarded reason to say AIM sucks. Who is going to sit there and type fake screennames of that length into a buddy lookup anyway? Theres no way to remotely expoit this. Garbage. It could be a real screen name, too. It just has to break AIM. ! I feel like trying it.No it couldn't, they are limited to 16 characters. There is no way to remotely exploit this, I'm not even sure how one could execute code unless they were sitting there. If you have local access, what's the point?