America Online (AOL) Deskbar.dll and Toolbar.dll denial of service
| aol-deskbar-toolbar-dos (33309) |
Description:
America Online (AOL) is vulnerable to a denial of service. By sending specially-crafted code to the Deskbar.dll and the Toolbar.dll files, a remote attacker could exploit this vulnerability to crash the browser.
Platforms Affected:
- AOL, AOL 9.0 Rev 4156.910
Remedy:
Upgrade to the latest version of America Online (AOL) (9.0 or later), available from the America Online Web site. See References.
Consequences:
Denial of Service
References:
- America Online Web site, AOL Downloads at http://downloads.channel.aol.com/windowsproducts.
- BugTraq Mailing List, Thu Mar 29 2007 - 12:52:34 CDT , AOL 9.0 Deskbar.dll/Toolbar.dll DoS Vulnerability at http://archives.neohapsis.com/archives/bugtraq/2007-03/0392.html.
- CVE-2007-1767: Unspecified vulnerability in (1) Deskbar.dll and (2) Toolbar.dll in AOL 9.0 before February 2007 allows remote attackers to cause a denial of service (browser crash) via unknown vectors.
Reported:
Mar 29, 2007
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
