CVE-2007-3897

Heap-based buffer overflow in Microsoft Outlook Express 6 and earlier, and Windows Mail for Vista, allows remote Network News Transfer Protocol (NNTP) servers to execute arbitrary code via long NNTP responses that trigger memory corruption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:outlook_express:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:6.0:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:windows_mail:-:*:*:*:*:vista:*:*

History

No history.

Information

Published : 2007-10-09 22:17

Updated : 2024-02-04 17:13


NVD link : CVE-2007-3897

Mitre link : CVE-2007-3897

CVE.ORG link : CVE-2007-3897


JSON object : View

Products Affected

microsoft

  • outlook_express
  • windows_mail
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer