Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll for Yahoo! Messenger allows remote attackers to execute arbitrary code via a long server property value to the send method. NOTE: some of these details are obtained from third party information.

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer

CPE : Common Platform Enumeration

Application 6

Open Source Vulnerability Database (OSVDB)

Id Description
37082 Yahoo! Webcam Upload ActiveX (ywcupl.dll) send Method Overflow

A buffer overflow exists in Yahoo! Messenger. The Webcam Upload ActiveX control fails to validate data passed to the 'send' method resulting in a stack overflow. With a specially crafted website, a context-dependent attacker can cause arbitrary code execution resulting in a loss of integrity.

Snort® IPS/IDS

Date Description
2014-01-10 Yahoo Webcam Upload ActiveX function call unicode access
RuleID : 11825 - Revision : 11 - Type : BROWSER-PLUGINS
2014-01-10 Yahoo Webcam Upload ActiveX function call access
RuleID : 11824 - Revision : 11 - Type : BROWSER-PLUGINS
2014-01-10 Yahoo Webcam Upload ActiveX clsid unicode access
RuleID : 11823 - Revision : 11 - Type : BROWSER-PLUGINS
2014-01-10 Yahoo Webcam Upload ActiveX clsid access
RuleID : 11822 - Revision : 14 - Type : BROWSER-PLUGINS

Nessus® Vulnerability Scanner

Date Description
2007-06-11 Name : The remote Windows host has a least one ActiveX control that is affected by a...
File : yahoo_msgr_webcam_activex_buffer_overflows.nasl - Type : ACT_GATHER_INFO

