CVE Vulnerabilities

CVE-2005-3267

Published: Oct 27, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Integer overflow in Skype client before 1.4.x.84 on Windows, before 1.3.x.17 on Mac OS, before 1.2.x.18 on Linux, and 1.1.x.6 and earlier allows remote attackers to cause a denial of service (crash) via crafted network data with a large Object Counter value, which leads to a resultant heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
SkypeSkype_technologies0.92.0.12 (including)0.92.0.12 (including)
SkypeSkype_technologies0.93.0.3 (including)0.93.0.3 (including)
SkypeSkype_technologies0.98.0.04 (including)0.98.0.04 (including)
SkypeSkype_technologies1.0.0.1 (including)1.0.0.1 (including)
SkypeSkype_technologies1.0.0.7 (including)1.0.0.7 (including)
SkypeSkype_technologies1.0.0.9 (including)1.0.0.9 (including)
SkypeSkype_technologies1.0.0.10 (including)1.0.0.10 (including)
SkypeSkype_technologies1.0.0.18 (including)1.0.0.18 (including)
SkypeSkype_technologies1.0.0.29 (including)1.0.0.29 (including)
SkypeSkype_technologies1.0.0.94 (including)1.0.0.94 (including)
SkypeSkype_technologies1.0.0.97 (including)1.0.0.97 (including)
SkypeSkype_technologies1.0.0.100 (including)1.0.0.100 (including)
SkypeSkype_technologies1.1.0.0 (including)1.1.0.0 (including)
SkypeSkype_technologies1.1.0.20 (including)1.1.0.20 (including)
SkypeSkype_technologies1.1.06 (including)1.1.06 (including)
SkypeSkype_technologies1.2.0.17 (including)1.2.0.17 (including)
SkypeSkype_technologies1.3.0.16 (including)1.3.0.16 (including)
SkypeSkype_technologies1.4.0.83 (including)1.4.0.83 (including)

References