Threat Monitor
Troj.Clicker.HTML.IFrame.kr
| Aliase: | |
|---|---|
| Pattern: | 201002151330 |
| Threat Typ | Verbreitung | Betroffene Systeme | Gefährlichkeit |
|---|---|---|---|
|
|
|
|
The vulnerability exists because it fails to bounds-check user-supplied data. By persuading a victim to visit a specially-crafted Web page that passes an overly long string to the ViewProfile() in the Activex Control, a remote attacker could overflow a buffer and execute arbitrary code on the system with the privileges of the victim.
Affected: Microsoft Windows Live Messenger 2009


