|
|

CVE Reference: CVE-2007-3148 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2007-3148 |
|
|
Description: Buffer overflow in the Yahoo! Webcam Viewer ActiveX control in ywcvwr.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute arbitrary code via a long server property value to the receive method. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/34759 ST 1018204 1018203 SAID Secunia Advisory: SA25547 MISC http://research.eeye.com/html/advisories/upcoming/20070605.html http://research.eeye.com/html/advisories/published/AD20070608.html MILW0RM http://www.milw0rm.com/exploits/4043 FULLDISC http://lists.grok.org.uk/pipermail/full-disclosure/2007-June/063819.html CONFIRM http://messenger.yahoo.com/security_update.php?id=060707 CERT-VN 932217 BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/470861/100/0/threaded BID 24355 24341 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |