← Voltar para CVEs
CVE-2012-0268
N/ADescricao
Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafted JPG image that triggers a heap-based buffer overflow.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado1/19/2012
Ultima modificacao4/11/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
yahoo:messenger
Fraquezas (CWE)
CWE-189
Referencias
http://secunia.com/advisories/47041(PSIRT-CNA@flexerasoftware.com)
http://secunia.com/advisories/47041(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.