CVE-2017-9948: Microsoft Skype

High severity, CVSS 8.8. EPSS: 6.4% chance of exploitation in the next 30 days.

A stack buffer overflow vulnerability has been discovered in Microsoft Skype 7.2, 7.35, and 7.36 before 7.37, involving MSFTEDIT.DLL mishandling of remote RDP clipboard content within the message box.

Affected products

  • Microsoft Skype: version 7.2 only; version 7.35 only; version 7.36 only

Published 2017-06-26. Last modified 2026-06-17.