mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-14 15:08:03 +02:00
21 lines
958 B
Markdown
21 lines
958 B
Markdown
### [CVE-2014-7216](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7216)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Multiple stack-based buffer overflows in Yahoo! Messenger 11.5.0.228 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) shortcut or (2) title keys in an emoticons.xml file.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://packetstormsecurity.com/files/133443/Yahoo-Messenger-11.5.0.228-Buffer-Overflow.html
|
|
- http://seclists.org/fulldisclosure/2015/Sep/24
|
|
- https://www.rcesecurity.com/2015/09/cve-2014-7216-a-journey-through-yahoos-bug-bounty-program/
|
|
|
|
#### Github
|
|
- https://github.com/MrTuxracer/advisories
|
|
- https://github.com/deadcyph3r/Awesome-Collection
|
|
|