The ActiveX Control (yNotifier.dll) in Yahoo! Assistant 3.6 and earlier allows remote attackers to execute arbitrary code via unspecified vectors in the Ynoifier COM object that trigger memory corruption.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://secunia.com/advisories/30115 | third party advisory |
http://www.vupen.com/english/advisories/2008/1471/references | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/42233 | vdb entry |
http://secway.org/advisory/AD20080506EN.txt | |
http://www.securitytracker.com/id?1020004 | vdb entry |
http://www.securityfocus.com/bid/29065 | vdb entry |