{ "schema_version": "1.4.0", "id": "GHSA-fr2m-xv6j-fvqg", "modified": "2022-05-01T18:45:31Z", "published": "2022-05-01T18:45:31Z", "aliases": [ "CVE-2007-6699" ], "details": "Multiple buffer overflows in the AIM PicEditor 9.5.1.8 ActiveX control in YGPPicEdit.dll in AOL You've Got Pictures (YGP) Picture Editor allow remote attackers to cause a denial of service (browser crash) via a long string in the (1) DisplayName, (2) FinalSavePath, (3) ForceSaveTo, (4) HiddenControls, (5) InitialEditorScreen, (6) Locale, (7) Proxy, and (8) UserAgent property values.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-6699" }, { "type": "WEB", "url": "http://osvdb.org/41198" }, { "type": "WEB", "url": "http://seclists.org/fulldisclosure/2007/Dec/0561.html" }, { "type": "WEB", "url": "http://seclists.org/fulldisclosure/2007/Dec/0574.html" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/27026" }, { "type": "WEB", "url": "http://www.securitytracker.com/id?1019143" } ], "database_specific": { "cwe_ids": [ "CWE-119" ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2008-02-04T23:00:00Z" } }