Name:
Yahoo.Assistant.ActiveX.Control.Access
Released Date:
May 14 2008
Severity:
critical
CVE:
2008-2111
Bugtraq:
29065

FortiGuard Center > Vulnerability Encyclopedia


In-Depth Analysis

Description
This indicates an attempt to exploit a vulnerability in the Yahoo! Assistant ActiveX control 'yNotifier.dll'.

This vulnerability is due to a memory-corruption error when the the ActiveX component is loaded. A remote attacker may exploit this and execute arbitrary code.
 
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
 
Affected Products
Yahoo! Assistant 3.6
Aliases
References
http://www.securityfocus.com/bid/29065
http://www.frsirt.com/english/advisories/2008/1471
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2111
Recommended Actions
Use the online update feature to update your software to the latest version.

 
 
SITE MAP  |  LEGAL NOTICES

      © 2003 FORTINET INC. ALL RIGHTS RESERVED