CVE-2009-0769

QIP 2005 build 8082 allows remote attackers to cause a denial of service (CPU consumption and application hang) via a crafted Rich Text Format (RTF) ICQ message, as demonstrated by an {rtfpict&&} message. NOTE: the vulnerability may be in Sergey Tkachenko TRichView. If so, then this should not be treated as a vulnerability in QIP.

Date published : 2009-03-03

http://www.securityfocus.com/bid/33609

http://www.securityfocus.com/archive/1/500656/100/0/threaded