Arbitrary Code Execution Vulnerability in Yahoo! Instant Messenger

A vulnerability in Yahoo Messenger can result in the execution of arbitrary code on the vulnerable system.

Ken Pfeil

December 3, 2003

1 Min Read
ITPro Today logo in a gray background | ITPro Today

Reported December 3, 2003, by Tri Huynh.

 

 

VERSIONS AFFECTED

 

  • Yahoo Messenger 5.6.0.1347 and earlier

 

DESCRIPTION

 

A vulnerability in Yahoo Messenger can result in the execution of arbitrary code on the vulnerable system. Yahoo Messenger's yauto.dll ActiveX/COM component is registered under a ProgID called YAuto.NSAuto.1. Inside this component, a function named Open(String URL) can cause a buffer overflow if an attacker sends a long stream of data in the form of a URL. Because yauto.dll is an ActiveX component, the attacker can exploit the vulnerability simply by creating a Web site with the correct ActiveX class ID (CLSID) and calling the function directly.

 

VENDOR RESPONSE

 

Yahoo has been notified.

 

CREDIT

 

Discovered byTri Huynh.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like