← Vulnerability feed

Vulnerability record · CVE-2002-0320 · published 25 June 2002

CVE-2002-0320: Yahoo messenger vulnerability

Yahoo · Messenger

Buffer overflow in Yahoo! Messenger 5.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) message or (2) IMvironment field.

7.5 CVSS 2.0 High EPSS 7.0% · top 6.1%
7.5CVSS 2.0 base score
7.0%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
16References
16 Jun 2026Last modified by NVD

Description

Buffer overflow in Yahoo! Messenger 5.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) message or (2) IMvironment field.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0320 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2014-7216Yahoo messenger memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in Yahoo! Messenger 11.5.0.228 and earlier allow remote attackers to cause a denial of service (crash) and poss…EPSS 6.8%9.3CVE-2007-4515Yahoo messenger memory buffer overflow vulnerabilityBuffer overflow in a certain ActiveX control in YVerInfo.dll before 2007.8.27.1 in the Yahoo! services suite for Yahoo! Messenger before 8.1.0.419 al…EPSS 33%9.3CVE-2007-4391Yahoo messenger improper input validation vulnerabilityHeap-based buffer overflow in Kakadu kdu_v32m.dll in Yahoo! Messenger 8.1.0.413 allows remote attackers to cause a denial of service (application cra…EPSS 9.3%9.3CVE-2007-3147Yahoo messenger memory buffer overflow vulnerabilityBuffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute a…EPSS 40%9.3CVE-2007-3148Yahoo messenger memory buffer overflow vulnerabilityBuffer overflow in the Yahoo! Webcam Viewer ActiveX control in ywcvwr.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute a…EPSS 12%9.3CVE-2007-1680Yahoo messenger vulnerabilityStack-based buffer overflow in the createAndJoinConference function in the AudioConf ActiveX control (yacscom.dll) in Yahoo! Messenger before 2007031…EPSS 8.4%9.3CVE-2006-6603Yahoo messenger vulnerabilityBuffer overflow in the YMMAPI.YMailAttach ActiveX control (ymmapi.dll) before 2005.1.1.4 in Yahoo! Messenger allows remote attackers to execute arbit…EPSS 6.6%7.6CVE-2007-3928Yahoo messenger memory buffer overflow vulnerabilityBuffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users to execute arbitrary code via a long e-mail address in an add…EPSS 5.7%

Source: NIST National Vulnerability Database (record CVE-2002-0320), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.