Skip to main content

Skype for Mac Message Handling Remote Code Execution Vulnerability

Last Update Date: 11 May 2011 11:18 Release Date: 11 May 2011 6380 Views

RISK: High Risk

TYPE: Clients - Im, Chat & Voip

TYPE: Im, Chat & Voip

A vulnerability has been identified in Skype for Mac, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by a memory corruption error when processing malformed messages, which could be exploited by an attacker who is in Skype's Contact List to execute arbitrary code by sending a malicious message to the target user.


Impact

  • Remote Code Execution

System / Technologies affected

  • Skype for Mac versions prior to 5.1.0.922

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to Skype for Mac version 5.1.0.922.

Vulnerability Identifier

  • No CVE information is available

Source


Related Link