First published: Fri Dec 31 2004(Updated: )
A "range check error" in Skype for Windows before 0.98.0.28 allows local and remote attackers to cause a denial of service (application crash) via long command line arguments or a long callto:// URL, a different vulnerability than CVE-2004-1114.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Skype | =0.98.0.04 | |
Microsoft Skype | <=0.98.0.27 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1777 has a moderate severity level as it allows for denial of service through application crashes.
To fix CVE-2004-1777, users should upgrade to Skype version 0.98.0.28 or later.
CVE-2004-1777 affects Skype for Windows versions 0.98.0.04 up to and including 0.98.0.27.
CVE-2004-1777 allows attackers to execute denial of service attacks by utilizing long command line arguments or extensive callto:// URLs.
Yes, CVE-2004-1777 can be exploited by both local and remote attackers.