2.6
CVSSv2

CVE-2003-1129

Published: 31/12/2003 Updated: 11/07/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 265
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control prior to 1,0,0,45 allows remote malicious users to cause a denial of service and possibly execute arbitrary code via a URL with a long hostname to Yahoo! Messenger or Yahoo! Chat.

Vulnerable Product Search on Vulmon Subscribe to Product

yahoo audio conferencing activex control 1.0.0.43

Exploits

source: wwwsecurityfocuscom/bid/7561/info It has been reported that the ActiveX control used by the Yahoo! Voice Chat feature is prone to an exploitable buffer overflow vulnerability This issue can be exploited via a malicious web page that calls the vulnerable control with malformed parameters Although unconfirmed, it has been conjectu ...