Denial of Service Vulnerability in Windows Live Messenger by Microsoft
CVE-2009-0647

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
19 February 2009

Summary

A vulnerability in msnmsgr.exe of Windows Live Messenger versions 2009 build 14.0.8064.206 and earlier allows remote attackers to trigger a denial of service by sending specially crafted packets. The vulnerability arises from the mishandling of header values, particularly the Character Set field in the Content-Type header. When exploited, this can result in the application crashing, thereby disrupting the normal functionality of the messaging service and potentially affecting user connectivity.

References

EPSS Score

18% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.