CVE-2007-4635

Yahoo! Messenger 8.1.0.209 and 8.1.0.402 allows remote attackers to cause a denial of service (application crash) via certain file-transfer packets, possibly involving a buffer overflow, as demonstrated by ym8bug.exe. NOTE: this might be related to CVE-2007-4515. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:yahoo:messenger:8.1.0.209:*:*:*:*:*:*:*
cpe:2.3:a:yahoo:messenger:8.1.0.402:*:*:*:*:*:*:*

History

21 Nov 2024, 00:36

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/25484 - Exploit () http://www.securityfocus.com/bid/25484 - Exploit

Information

Published : 2007-08-31 23:17

Updated : 2024-11-21 00:36


NVD link : CVE-2007-4635

Mitre link : CVE-2007-4635

CVE.ORG link : CVE-2007-4635


JSON object : View

Products Affected

yahoo

  • messenger
CWE
CWE-20

Improper Input Validation

CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer