CVE-2007-3147: Buffer Overflow
Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute arbitrary code via a long server property value to the send method. NOTE: some of these details are obtained from third party information.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3147?
CVE-2007-3147 has a high severity rating due to its ability to allow remote attackers to execute arbitrary code.
How do I fix CVE-2007-3147?
To fix CVE-2007-3147, users should update to the latest version of Yahoo Messenger that does not contain this vulnerability.
Which versions of Yahoo Messenger are affected by CVE-2007-3147?
CVE-2007-3147 affects Yahoo Messenger versions 2.0.1.4, as well as 8.0 and 8.1 series.
What type of vulnerability is CVE-2007-3147?
CVE-2007-3147 is classified as a buffer overflow vulnerability.
Can CVE-2007-3147 be exploited remotely?
Yes, CVE-2007-3147 can be exploited remotely via a malicious server property value passed to the send method.