Skip to main content

Vendor/product archive

microsoft / windows_live_messenger CVEs

Beta · best-effort

9 CVEs tagged to microsoft / windows_live_messenger1 Critical, 0 High, 8 Medium, 0 Low, 0 Unrated.

CVE-2009-0647

Published Feb 19, 2009

msnmsgr.exe in Windows Live Messenger (WLM) 2009 build 14.0.8064.206, and other 14.0.8064.x builds, allows remote attackers to cause a denial of service (application crash) via a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5828

Published Jan 2, 2009

Microsoft Windows Live Messenger Client 8.5.1 and earlier, when MSN Protocol Version 15 (MSNP15) is used over a NAT session, allows remote attackers to discover intranet IP addres…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5144

Published Oct 1, 2007

Buffer overflow in the GDI engine in Windows Live Messenger, as used for Windows MSN Live 8.1, allows user-assisted remote attackers to cause a denial of service (application cras…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6252

Published Dec 4, 2006

Microsoft Windows Live Messenger 8.0 and earlier, when gestual emoticons are enabled, allows remote attackers to cause a denial of service (CPU consumption) via a long string comp…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3250

Published Jun 27, 2006

Heap-based buffer overflow in Windows Live Messenger 8.0 allows user-assisted attackers to execute arbitrary code via a crafted Contact List (.ctt) file, which triggers the overfl…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1