6
CVSSv2

CVE-2007-3638

Published: 10/07/2007 Updated: 05/09/2008
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 605
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users, who are listed in an address book, to execute arbitrary code via unspecified vectors, aka ZD-00000005. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.

Vulnerable Product Search on Vulmon Subscribe to Product

yahoo messenger 8.1

Exploits

source: wwwsecurityfocuscom/bid/24926/info Yahoo! Messenger is prone to a remote buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data Attackers can exploit this issue to execute arbitrary code in the context of the application or to cause denial-of-service conditions Yahoo! Messenger ...