CVE-2005-1618

The YMSGR URL handler in Yahoo! Messenger 5.x through 6.0 allows remote attackers to cause a denial of service (disconnect) via a room login or a room join request packet with a third : (colon) and an & (ampersand), which causes Messenger to send a corrupted packet to the server, which triggers a disconnect from the server.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:yahoo:messenger:5.5:*:*:*:*:*:*:*
cpe:2.3:a:yahoo:messenger:5.6:*:*:*:*:*:*:*
cpe:2.3:a:yahoo:messenger:6.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:57

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=111601904204055&w=2 - () http://marc.info/?l=bugtraq&m=111601904204055&w=2 -
References () http://www.osvdb.org/16816 - () http://www.osvdb.org/16816 -
References () http://www.securityfocus.com/bid/13626 - () http://www.securityfocus.com/bid/13626 -

Information

Published : 2005-05-16 04:00

Updated : 2024-11-20 23:57


NVD link : CVE-2005-1618

Mitre link : CVE-2005-1618

CVE.ORG link : CVE-2005-1618


JSON object : View

Products Affected

yahoo

  • messenger