CVE-2017-9948

A stack buffer overflow vulnerability has been discovered in Microsoft Skype 7.2, 7.35, and 7.36 before 7.37, involving MSFTEDIT.DLL mishandling of remote RDP clipboard content within the message box.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:skype:7.2:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:skype:7.35:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:skype:7.36:*:*:*:*:*:*:*

History

21 Nov 2024, 03:37

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/99281 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/99281 - Third Party Advisory, VDB Entry
References () https://www.vulnerability-db.com/?q=articles/2017/05/28/stack-buffer-overflow-zero-day-vulnerability-uncovered-microsoft-skype-v72-v735 - Third Party Advisory, VDB Entry () https://www.vulnerability-db.com/?q=articles/2017/05/28/stack-buffer-overflow-zero-day-vulnerability-uncovered-microsoft-skype-v72-v735 - Third Party Advisory, VDB Entry
References () https://www.vulnerability-lab.com/get_content.php?id=2071 - Mailing List, Third Party Advisory () https://www.vulnerability-lab.com/get_content.php?id=2071 - Mailing List, Third Party Advisory
References () https://www.vulnerability-lab.com/get_content.php?id=2084 - Mailing List, Third Party Advisory () https://www.vulnerability-lab.com/get_content.php?id=2084 - Mailing List, Third Party Advisory

Information

Published : 2017-06-26 14:29

Updated : 2024-11-21 03:37


NVD link : CVE-2017-9948

Mitre link : CVE-2017-9948

CVE.ORG link : CVE-2017-9948


JSON object : View

Products Affected

microsoft

  • skype
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer