Vulnerability Name: | CVE-2007-4034 (CCN-35644) | ||||||||
Assigned: | 2007-07-24 | ||||||||
Published: | 2007-07-24 | ||||||||
Updated: | 2011-03-07 | ||||||||
Summary: | Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before 2007.7.13.3 (20070620) in YDPCTL.dll in Yahoo! Widgets before 4.0.5 allows remote attackers to execute arbitrary code via a long argument to the GetComponentVersion method. Note: some of these details are obtained from third party information. | ||||||||
CVSS v3 Severity: | 9.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 7.3 High (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
6.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-4034 Source: CONFIRM Type: Patch, Vendor Advisory http://help.yahoo.com/l/us/yahoo/widgets/security/security-08.html Source: CCN Type: Yahoo Web site About the July 24, 2007 Security Update (YDPCTL.dll) Source: OSVDB Type: UNKNOWN 37705 Source: CCN Type: SA26011 Yahoo! Widgets YDP ActiveX Control Buffer Overflow Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory 26011 Source: CCN Type: SECTRACK ID: 1018470 Yahoo! Widgets Buffer Overflow in `YDPCTL.dll` ActiveX Control Lets Remote Users Execute Arbitrary Code Source: CCN Type: US-CERT VU#120760 Yahoo! Installer Plugin for Widgets ActiveX control stack buffer overflow Source: CERT-VN Type: US Government Resource VU#120760 Source: CCN Type: OSVDB ID: 37705 Yahoo! Widgets YDP YDPCTL.YDPControl.1 ActiveX (YDPCTL.dll) GetComponentVersion Method Arbitrary Code Execution Source: BID Type: Exploit, Patch 25086 Source: CCN Type: BID-25086 Yahoo! Widgets Engine YDPCTL.DLL ActiveX Control Buffer Overflow Vulnerability Source: SECTRACK Type: UNKNOWN 1018470 Source: VUPEN Type: UNKNOWN ADV-2007-2679 Source: XF Type: UNKNOWN yahoo-widgets-ydpctl-bo(35644) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |