CHAT: MSN Invalid Video Frame
This signature detects MSN video packets containing invalid frame information. Malicious users can send video frames to vulnerable MSN Messenger clients and cause a denial of service or execute arbitrary code. MSN Messenger 7.x and 8.1 are affected.
Extended Description
Microsoft MSN Messenger is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data. Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application. Failed exploit attempts will likely result in denial-of-service conditions.
Affected Products
Microsoft windows_live_messenger
References
BugTraq: 25461
CVE: CVE-2007-2931
URL: http://www.team509.com/modules.php?name=News&file=article&sid=50/8.1
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Microsoft
9.3