Buffer overflow in Skype for Windows 1.1.x.0 through 1.4.x.83 allows remote attackers to execute arbitrary code via (1) callto:// and (2) skype:// links, or (3) a non-standard VCARD, possibly due to an underlying error in the SysUtils.WideFmtStr Delphi routine.
2005-10-27T10:02:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | skype_technologies | skype | 1.1.0.61 | Yes |
| Application | skype_technologies | skype | 1.1.0.73 | Yes |
| Application | skype_technologies | skype | 1.1.0.79 | Yes |
| Application | skype_technologies | skype | 1.2.0.0 | Yes |
| Application | skype_technologies | skype | 1.2.0.37 | Yes |
| Application | skype_technologies | skype | 1.2.0.41 | Yes |
| Application | skype_technologies | skype | 1.2.0.46 | Yes |
| Application | skype_technologies | skype | 1.3.0.45 | Yes |
| Application | skype_technologies | skype | 1.3.0.48 | Yes |
| Application | skype_technologies | skype | 1.3.0.51 | Yes |
| Application | skype_technologies | skype | 1.3.0.54 | Yes |
| Application | skype_technologies | skype | 1.3.0.55 | Yes |
| Application | skype_technologies | skype | 1.3.0.57 | Yes |
| Application | skype_technologies | skype | 1.3.0.60 | Yes |
| Application | skype_technologies | skype | 1.3.0.66 | Yes |
| Application | skype_technologies | skype | 1.4.0.71 | Yes |
| Application | skype_technologies | skype | 1.4.0.78 | Yes |
| Application | skype_technologies | skype | 1.4.0.83 | Yes |