Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1920. PoCs published by Leon Juranic.
AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in ICQ 6 by sending a maliciously crafted HTML link with an excessively long string. The lack of boundary checks allows arbitrary code execution or denial of service.
Description
Heap-based buffer overflow in the boxelyRenderer module in the Personal Status Manager feature in ICQ 6.0 build 6043 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted personal status message.
Exploits (1)
This exploit leverages a buffer overflow vulnerability in ICQ 6 by sending a maliciously crafted HTML link with an excessively long string. The lack of boundary checks allows arbitrary code execution or denial of service.