Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control before 1,0,0,45 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a URL with a long hostname to Yahoo! Messenger or Yahoo! Chat.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/7561 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/12130 | vdb entry |
http://www.kb.cert.org/vuls/id/272644 | third party advisory us government resource |
http://help.yahoo.com/help/us/mesg/use/use-45.html | |
http://secunia.com/advisories/8924 | third party advisory patch |
http://www.securityfocus.com/archive/1/323439 | mailing list patch |