Yahoo! Messenger < 22.214.171.1241 Multiple DoS
Low Nessus Network Monitor Plugin ID 2681
SynopsisThe remote host is vulnerable to a Denial of Service (DoS) attack.
DescriptionThe remote host is running a version of Yahoo Instant Messenger that is reported vulnerable to a remote buffer overflow. An attacker exploiting this flaw would craft a malicious 'away' message and then entice an unsuspecting user to attempt to contact them. When the user receives the malicious 'away' message, the overflow would be triggered and code would be executed remotely. In addition, this version of Yahoo! Messenger is vulnerable to a remote Denial of Service (DoS) attack via a malformed YMSGR: URI.
SolutionUpgrade to version 126.96.36.1991 or higher.