Back

CVE-2004-1114

Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98 allows remote attackers to execute arbitrary code via a callto:// URL with a long non-existent username, a different vulnerability than CVE-2004-1777.

Published: Jan 10, 2005 Modified: Jun 16, 2026
CWE-119

CVSS Metrics

Affected Products (6)

Vendor Product Version
skype_technologies skype 1.0.0.9
skype_technologies skype 1.0.0.10
skype_technologies skype 1.0.0.18
skype_technologies skype 1.0.0.29
skype_technologies skype 1.0.0.94
skype_technologies skype 1.0.0.97

GitHub Security Advisory GHSA-vr53-8hj3-vc9j

Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98...

Risk Scores

CVSS Score 9.3 / 10
EPSS Score 5.75%

Top 8% most likely to be exploited

Threat Score 38.9 / 100

Data Sources

NVD EPSS GitHub