CVE Vulnerabilities

CVE-2012-0268

Published: Jan 19, 2012 | Modified: Jan 23, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafted JPG image that triggers a heap-based buffer overflow.

Affected Software

Name Vendor Start Version End Version
Messenger Yahoo * 11.5.0.152 (including)
Messenger Yahoo 0.99.17-1 (including) 0.99.17-1 (including)
Messenger Yahoo 1.0 (including) 1.0 (including)
Messenger Yahoo 1.0.4 (including) 1.0.4 (including)
Messenger Yahoo 1.0.6 (including) 1.0.6 (including)
Messenger Yahoo 2.0.1.4 (including) 2.0.1.4 (including)
Messenger Yahoo 3.0 (including) 3.0 (including)
Messenger Yahoo 3.0.1 (including) 3.0.1 (including)
Messenger Yahoo 3.0.1-beta-35554 (including) 3.0.1-beta-35554 (including)
Messenger Yahoo 3.5 (including) 3.5 (including)
Messenger Yahoo 4.0 (including) 4.0 (including)
Messenger Yahoo 4.1 (including) 4.1 (including)
Messenger Yahoo 5.0 (including) 5.0 (including)
Messenger Yahoo 5.0.1046 (including) 5.0.1046 (including)
Messenger Yahoo 5.0.1065 (including) 5.0.1065 (including)
Messenger Yahoo 5.0.1232 (including) 5.0.1232 (including)
Messenger Yahoo 5.5 (including) 5.5 (including)
Messenger Yahoo 5.5.1249 (including) 5.5.1249 (including)
Messenger Yahoo 5.6 (including) 5.6 (including)
Messenger Yahoo 5.6.0.1347 (including) 5.6.0.1347 (including)
Messenger Yahoo 5.6.0.1351 (including) 5.6.0.1351 (including)
Messenger Yahoo 5.6.0.1355 (including) 5.6.0.1355 (including)
Messenger Yahoo 5.6.0.1356 (including) 5.6.0.1356 (including)
Messenger Yahoo 5.6.0.1358 (including) 5.6.0.1358 (including)
Messenger Yahoo 6.0 (including) 6.0 (including)
Messenger Yahoo 6.0.0.1643 (including) 6.0.0.1643 (including)
Messenger Yahoo 6.0.0.1750 (including) 6.0.0.1750 (including)
Messenger Yahoo 6.0.0.1921 (including) 6.0.0.1921 (including)
Messenger Yahoo 6.1 (including) 6.1 (including)
Messenger Yahoo 7.0 (including) 7.0 (including)
Messenger Yahoo 7.0.0.426 (including) 7.0.0.426 (including)
Messenger Yahoo 7.0.0.437 (including) 7.0.0.437 (including)
Messenger Yahoo 7.0.438 (including) 7.0.438 (including)
Messenger Yahoo 7.5 (including) 7.5 (including)
Messenger Yahoo 7.5.0.814 (including) 7.5.0.814 (including)
Messenger Yahoo 8.0 (including) 8.0 (including)
Messenger Yahoo 8.0.0.505 (including) 8.0.0.505 (including)
Messenger Yahoo 8.0.0.508 (including) 8.0.0.508 (including)
Messenger Yahoo 8.0.0.701 (including) 8.0.0.701 (including)
Messenger Yahoo 8.0.0.716 (including) 8.0.0.716 (including)
Messenger Yahoo 8.0.0.863 (including) 8.0.0.863 (including)
Messenger Yahoo 8.0.1 (including) 8.0.1 (including)
Messenger Yahoo 8.0_2005.1.1.4 (including) 8.0_2005.1.1.4 (including)
Messenger Yahoo 8.1 (including) 8.1 (including)
Messenger Yahoo 8.1.0.195 (including) 8.1.0.195 (including)
Messenger Yahoo 8.1.0.209 (including) 8.1.0.209 (including)
Messenger Yahoo 8.1.0.239 (including) 8.1.0.239 (including)
Messenger Yahoo 8.1.0.244 (including) 8.1.0.244 (including)
Messenger Yahoo 8.1.0.249 (including) 8.1.0.249 (including)
Messenger Yahoo 8.1.0.401 (including) 8.1.0.401 (including)
Messenger Yahoo 8.1.0.402 (including) 8.1.0.402 (including)
Messenger Yahoo 8.1.0.413 (including) 8.1.0.413 (including)
Messenger Yahoo 8.1.0.416 (including) 8.1.0.416 (including)
Messenger Yahoo 8.1.0.419 (including) 8.1.0.419 (including)
Messenger Yahoo 8.1.0.421 (including) 8.1.0.421 (including)
Messenger Yahoo 9.0.0.797-beta (including) 9.0.0.797-beta (including)
Messenger Yahoo 9.0.0.907-beta (including) 9.0.0.907-beta (including)
Messenger Yahoo 9.0.0.922-beta (including) 9.0.0.922-beta (including)
Messenger Yahoo 9.0.0.1389-beta (including) 9.0.0.1389-beta (including)
Messenger Yahoo 9.0.0.1912 (including) 9.0.0.1912 (including)
Messenger Yahoo 9.0.0.2018 (including) 9.0.0.2018 (including)
Messenger Yahoo 9.0.0.2034 (including) 9.0.0.2034 (including)
Messenger Yahoo 9.0.0.2112 (including) 9.0.0.2112 (including)
Messenger Yahoo 9.0.0.2123 (including) 9.0.0.2123 (including)
Messenger Yahoo 9.0.0.2128 (including) 9.0.0.2128 (including)
Messenger Yahoo 9.0.0.2133 (including) 9.0.0.2133 (including)
Messenger Yahoo 9.0.0.2136 (including) 9.0.0.2136 (including)
Messenger Yahoo 9.0.0.2152 (including) 9.0.0.2152 (including)
Messenger Yahoo 9.0.0.2160 (including) 9.0.0.2160 (including)
Messenger Yahoo 9.0.0.2161 (including) 9.0.0.2161 (including)
Messenger Yahoo 9.0.0.2162 (including) 9.0.0.2162 (including)
Messenger Yahoo 10.0.0.331-pre-alpha (including) 10.0.0.331-pre-alpha (including)
Messenger Yahoo 10.0.0.525-beta (including) 10.0.0.525-beta (including)
Messenger Yahoo 10.0.0.542-beta (including) 10.0.0.542-beta (including)
Messenger Yahoo 10.0.0.1102 (including) 10.0.0.1102 (including)
Messenger Yahoo 10.0.0.1241 (including) 10.0.0.1241 (including)
Messenger Yahoo 10.0.0.1258 (including) 10.0.0.1258 (including)
Messenger Yahoo 10.0.0.1264 (including) 10.0.0.1264 (including)
Messenger Yahoo 10.0.0.1267 (including) 10.0.0.1267 (including)
Messenger Yahoo 10.0.0.1270 (including) 10.0.0.1270 (including)
Messenger Yahoo 11.0.0.1751 (including) 11.0.0.1751 (including)
Messenger Yahoo 11.0.0.2009 (including) 11.0.0.2009 (including)
Messenger Yahoo 11.0.0.2014 (including) 11.0.0.2014 (including)

References