← Back

CVE-2012-0268

nvd nist
Published: Jan 19, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.1
Vector
AV:N/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 4.9 / Impact: 6.4
Source: NVD

Description

Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafted JPG image that triggers a heap-based buffer overflow.

Affected (83)

Products: Yahoo: Messenger
1 product
Messenger
Configuration A
83 vulnerable
Vulnerable SoftwareAffected Versions
Yahoo
Up to 11.5.0.152
Version 0.99.17-1
Version 1.0.4
Version 1.0.6
Version 1.0
Version 10.0.0.1102
Version 10.0.0.1241
Version 10.0.0.1258
Version 10.0.0.1264
Version 10.0.0.1267
Version 10.0.0.1270
Version 10.0.0.331 pre-alpha
Version 10.0.0.525 beta
Version 10.0.0.542 beta
Version 11.0.0.1751
Version 11.0.0.2009
Version 11.0.0.2014
Version 2.0.1.4
Version 3.0.1
Version 3.0.1 beta-35554
Version 3.0
Version 3.5
Version 4.0
Version 4.1
Version 5.0.1046
Version 5.0.1065
Version 5.0.1232
Version 5.0
Version 5.5.1249
Version 5.5
Version 5.6.0.1347
Version 5.6.0.1351
Version 5.6.0.1355
Version 5.6.0.1356
Version 5.6.0.1358
Version 5.6
Version 6.0.0.1643
Version 6.0.0.1750
Version 6.0.0.1921
Version 6.0
Version 6.1
Version 7.0.0.426
Version 7.0.0.437
Version 7.0.438
Version 7.0
Version 7.5.0.814
Version 7.5
Version 8.0.0.505
Version 8.0.0.508
Version 8.0.0.701
Version 8.0.0.716
Version 8.0.0.863
Version 8.0.1
Version 8.0
Version 8.0_2005.1.1.4
Version 8.1.0.195
Version 8.1.0.209
Version 8.1.0.239
Version 8.1.0.244
Version 8.1.0.249
Version 8.1.0.401
Version 8.1.0.402
Version 8.1.0.413
Version 8.1.0.416
Version 8.1.0.419
Version 8.1.0.421
Version 8.1
Version 9.0.0.1389 beta
Version 9.0.0.1912
Version 9.0.0.2018
Version 9.0.0.2034
Version 9.0.0.2112
Version 9.0.0.2123
Version 9.0.0.2128
Version 9.0.0.2133
Version 9.0.0.2136
Version 9.0.0.2152
Version 9.0.0.2160
Version 9.0.0.2161
Version 9.0.0.2162
Version 9.0.0.797 beta
Version 9.0.0.907 beta
Version 9.0.0.922 beta

Related CWEs

References (2)

Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.