CVE-2006-0316
Summary
| CVE | CVE-2006-0316 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-01-19 01:03:00 UTC |
| Updated | 2017-07-20 01:29:00 UTC |
| Description | Buffer overflow in YGPPicFinder.DLL in AOL You've Got Pictures (YGP) Picture Finder Tool ActiveX Control, as used in AOL 8.0, 8.0 Plus, and 9.0 Classic, allows remote attackers to execute arbitrary code via unspecified vectors. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Aol | Aol Client Software | 8.0 | All | All | All |
| Application | Aol | Aol Client Software | 8.0 | All | plus | All |
| Application | Aol | Aol Client Software | 9.0 | All | classic | All |
| Application | Aol | Aol Client Software | 8.0 | All | All | All |
| Application | Aol | Aol Client Software | 8.0 | All | plus | All |
| Application | Aol | Aol Client Software | 9.0 | All | classic | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| AOL You've Got Pictures ActiveX Control Buffer Overflow - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| news.com.com/2061-10789_3-6027865.html | MISC | news.com.com | |
| SecurityTracker.com Archives - AOL Buffer Overflow in You've Got Pictures ActiveX Control Lets Remote Users Execute Arbitrary Code | SECTRACK | securitytracker.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| 22486 | OSVDB | www.osvdb.org | |
| AOL You've Got Pictures ActiveX Control Buffer Overflow Vulnerability | BID | www.securityfocus.com | Patch |
| US-CERT Vulnerability Note VU#715730 | CERT-VN | www.kb.cert.org | Patch, Third Party Advisory, US Government Resource |
| America Online, Inc. Information for VU#715730 | CONFIRM | www.kb.cert.org | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.