Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Yahoo! Messenger Webcam Viewer ActiveX Control Buffer Overflow Vulnerability

Yahoo! Messenger Webcam Viewer ActiveX control is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.

Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of applications that use the affected control (typically Internet Explorer).

Yahoo! Messenger 8.0.1 is considered vulnerable; other versions may also be affected.

DeepSight has identified this issue as being actively exploited in the wild in at least one website. The 'n.88tw.net' website is known to be hosting an exploit for this issue.







 

Privacy Statement
Copyright 2009, SecurityFocus