VulnerabilityModified
CVE-2003-1129
Buffer overflow in the Yahoo!
LOW 2.6EPSS 8.34%
Does this matter?
Lower severity and a low EPSS score (8.34%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control before 1,0,0,45 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a URL with a long hostname to Yahoo! Messenger or Yahoo! Chat.
- CVSS 2.0
- 2.6 LOWAV:N/AC:H/Au:N/C:N/I:N/A:P
- EPSS
- 8.34% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- yahoo/audio conferencing activex control
- Source
- cve@mitre.org
References
- http://help.yahoo.com/help/us/mesg/use/use-45.html
- http://secunia.com/advisories/8924Patch
- http://www.kb.cert.org/vuls/id/272644Third Party Advisory, US Government Resource
- http://www.securityfocus.com/archive/1/323439Patch
- http://www.securityfocus.com/bid/7561
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12130
- http://help.yahoo.com/help/us/mesg/use/use-45.html
- http://secunia.com/advisories/8924Patch
- http://www.kb.cert.org/vuls/id/272644Third Party Advisory, US Government Resource
- http://www.securityfocus.com/archive/1/323439Patch
- http://www.securityfocus.com/bid/7561
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12130
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.