← Vulnerability feed

Vulnerability record · CVE-2007-2931 · published 31 August 2007

CVE-2007-2931: Microsoft MSN/Live Messenger heap buffer overflow in video chat

Microsoft · Msn Messenger

A heap-based buffer overflow exists in Microsoft MSN Messenger 6.2, 7.0, 7.5 and Windows Live Messenger 8.0, triggered through unspecified vectors in Web Cam and video conversation handling. Because the flaw is memory corruption reachable over the network, successful exploitation can lead to arbitrary code execution on the victim's machine.

9.3 CVSS 2.0 High EPSS 55% · top 1.0% CWE-20 · Improper input validationCWE-119 · Memory buffer overflow
9.3CVSS 2.0 base score
55%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
22References, 4 tagged exploit
16 Jun 2026Last modified by NVD

Description

Heap-based buffer overflow in Microsoft MSN Messenger 6.2, 7.0, and 7.5, and Live Messenger 8.0 allows user-assisted remote attackers to execute arbitrary code via unspecified vectors involving video conversation handling in Web Cam and video chat sessions.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 19 September 2026. Confidence: medium.

high priorityThe flaw allows remote code execution with a high CVSS score and public exploit references, though it requires user-assisted video interaction and affects only legacy Messenger clients.

What it is

A heap-based buffer overflow exists in Microsoft MSN Messenger 6.2, 7.0, 7.5 and Windows Live Messenger 8.0, triggered through unspecified vectors in Web Cam and video conversation handling. Because the flaw is memory corruption reachable over the network, successful exploitation can lead to arbitrary code execution on the victim's machine.

Impact

An attacker can execute arbitrary code with the privileges of the logged-in Messenger user, giving full control of confidentiality, integrity and availability on the affected host.

Attack surface

Reached remotely over the network through a Messenger video conversation; the CVSS vector (AV:N/AC:M/Au:N) indicates no authentication is required but some condition, consistent with the user-assisted nature of accepting or engaging in a video chat, must be met.

Exploitation

Not listed in CISA KEV, but EPSS is high (0.55451, ~99th percentile) and multiple references are tagged Exploit, indicating public exploit material exists.

What to do

  • Apply the Microsoft security update MS07-054 for the affected Messenger versions.
  • Upgrade to a supported Messenger client that is not affected by this flaw.
  • Block or restrict Messenger video/Web Cam traffic at the network perimeter where business use does not require it.
  • Disable or remove the vulnerable Messenger clients on hosts that do not need them.
  • Educate users not to accept video chat sessions from unknown contacts.

Detection

  • Monitor for crashes or abnormal process termination in msnmsgr.exe or related Messenger processes during video sessions.
  • Hunt for unexpected child processes or network connections spawned by Messenger after a video conversation.
  • Review endpoint logs for memory-corruption indicators or exploit artifacts tied to Messenger video handling.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2007-2931 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2004-0597libpng PNG chunk buffer overflows allow remote code executionlibpng 1.2.5 and earlier contain multiple buffer overflows in the png_handle_tRNS, png_handle_sBIT and png_handle_hIST functions, which fail to valid…EPSS 83%analysed7.5CVE-2005-0562Microsoft msn messenger vulnerabilityGIF file validation error in MSN Messenger 6.2 allows remote attackers in a user's contact list to execute arbitrary code via a GIF image with an imp…EPSS 23%7.5CVE-2002-0155Microsoft msn chat control vulnerabilityBuffer overflow in Microsoft MSN Chat ActiveX Control, as used in MSN Messenger 4.5 and 4.6, and Exchange Instant Messenger 4.5 and 4.6, allows remot…EPSS 24%5.1CVE-2006-3250Microsoft windows live messenger vulnerabilityHeap-based buffer overflow in Windows Live Messenger 8.0 allows user-assisted attackers to execute arbitrary code via a crafted Contact List (.ctt) f…EPSS 6.8%5.0CVE-2009-0647Microsoft windows live messenger improper input validation vulnerabilitymsnmsgr.exe in Windows Live Messenger (WLM) 2009 build 14.0.8064.206, and other 14.0.8064.x builds, allows remote attackers to cause a denial of serv…EPSS 17%5.0CVE-2008-5828Microsoft windows live messenger information exposure vulnerabilityMicrosoft Windows Live Messenger Client 8.5.1 and earlier, when MSN Protocol Version 15 (MSNP15) is used over a NAT session, allows remote attackers …EPSS 14%5.0CVE-2008-5179Microsoft office communications server vulnerabilityUnspecified vulnerability in Microsoft Office Communications Server (OCS), Office Communicator, and Windows Live Messenger allows remote attackers to…EPSS 16%5.0CVE-2007-3436Microsoft msn messenger vulnerabilityMicrosoft MSN Messenger 4.7 on Windows XP allows remote attackers to cause a denial of service (resource consumption) via a flood of SIP INVITE reque…EPSS 13%

Source: NIST National Vulnerability Database (record CVE-2007-2931), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.