First published: Fri Aug 31 2007(Updated: )
Yahoo! Messenger 8.1.0.209 and 8.1.0.402 allows remote attackers to cause a denial of service (application crash) via certain file-transfer packets, possibly involving a buffer overflow, as demonstrated by ym8bug.exe. NOTE: this might be related to CVE-2007-4515. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yahoo Messenger | =8.1.0.402 | |
Yahoo Messenger | =8.1.0.209 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4635 has been classified as a denial of service vulnerability that can cause the Yahoo! Messenger application to crash.
To mitigate CVE-2007-4635, update to a newer version of Yahoo! Messenger that is not affected by this vulnerability.
CVE-2007-4635 affects Yahoo! Messenger versions 8.1.0.209 and 8.1.0.402.
CVE-2007-4635 is associated with a denial of service attack that can lead to application crashes via manipulated file-transfer packets.
Yes, CVE-2007-4635 may be related to CVE-2007-4515, indicating a potential connection in the nature of the vulnerabilities.