CVE-2007-4515: Buffer Overflow
Buffer overflow in a certain ActiveX control in YVerInfo.dll before 2007.8.27.1 in the Yahoo! services suite for Yahoo! Messenger before 8.1.0.419 allows remote attackers to execute arbitrary code via unspecified vectors involving arguments to the (1) fvCom and (2) info methods. NOTE: some of these details are obtained from third party information.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4515?
CVE-2007-4515 has a high severity rating due to its potential for remote code execution.
How does CVE-2007-4515 exploit the system?
CVE-2007-4515 exploits a buffer overflow vulnerability in the YVerInfo.dll ActiveX control.
What versions of Yahoo Messenger are affected by CVE-2007-4515?
CVE-2007-4515 affects Yahoo Messenger versions up to and including 8.1.0.413.
How do I fix CVE-2007-4515?
To fix CVE-2007-4515, update Yahoo Messenger to version 8.1.0.419 or later.
What are the potential consequences of exploiting CVE-2007-4515?
Exploiting CVE-2007-4515 may allow attackers to execute arbitrary code on the affected system.