CVE-2007-3638

Yahoo Messenger - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users, who are listed in an address book, to execute arbitrary code via unspecified vectors, aka ZD-00000005. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Rajesh Sethumadhavan · textdoswindows
https://www.exploit-db.com/exploits/30314

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/24784

Scores

EPSS 0.0452
EPSS Percentile 89.2%

Details

CWE
CWE-119
Status published
Products (1)
yahoo/messenger 8.1
Published Jul 10, 2007
Tracked Since Feb 18, 2026