CVE

CVE-2007-6699

Severity:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
04/02/2008
Last modified:
15/11/2008

Description

Multiple buffer overflows in the AIM PicEditor 9.5.1.8 ActiveX control in YGPPicEdit.dll in AOL You've Got Pictures (YGP) Picture Editor allow remote attackers to cause a denial of service (browser crash) via a long string in the (1) DisplayName, (2) FinalSavePath, (3) ForceSaveTo, (4) HiddenControls, (5) InitialEditorScreen, (6) Locale, (7) Proxy, and (8) UserAgent property values.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:aol:ygp_piceditor_activex_control:9.5.1.8:*:*:*:*:*:*:*