← Back to CVEs
CVE-2012-0268
N/ADescription
Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafted JPG image that triggers a heap-based buffer overflow.
CVE Details
CVSS v3.1 ScoreN/A
Published1/19/2012
Last Modified4/11/2025
Sourcenvd
Honeypot Sightings0
Affected Products
yahoo:messenger
Weaknesses (CWE)
CWE-189
References
http://secunia.com/advisories/47041(PSIRT-CNA@flexerasoftware.com)
http://secunia.com/advisories/47041(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.