Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2005-0737


Buffer overflow in Yahoo! Messenger allows remote attackers to execute arbitrary code via the offline mode.


Published

2005-05-02T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application yahoo messenger 4.0 Yes
Application yahoo messenger 5.0 Yes
Application yahoo messenger 5.0.1046 Yes
Application yahoo messenger 5.0.1065 Yes
Application yahoo messenger 5.0.1232 Yes
Application yahoo messenger 5.5 Yes
Application yahoo messenger 5.5.1249 Yes
Application yahoo messenger 5.6 Yes
Application yahoo messenger 5.6.0.1347 Yes
Application yahoo messenger 5.6.0.1351 Yes
Application yahoo messenger 5.6.0.1355 Yes
Application yahoo messenger 5.6.0.1356 Yes
Application yahoo messenger 5.6.0.1358 Yes
Application yahoo messenger 6.0 Yes
Application yahoo messenger 6.0.0.1643 Yes
Application yahoo messenger 6.0.0.1750 Yes
Application yahoo messenger 6.0.0.1921 Yes

References