Skype patches Mac OS X security flaw

By
Follow google news

Vulnerability could allow for URL attacks.

Skype patches Mac OS X security flaw
Skype has release a patch for a vulnerability in its VoIP software for Mac OS X. The flaw does not affect Windows, Linux or PocketPC versions of Skype.

The vulnerability could allow an attacker to use a specially crafted Skype URL to gain access to a system and execute code. For the vulnerability to be exploited, the user would need to click on the malicious link in another application.

Skype said that the vulnerability lies within the program's URI handler, a component that decodes file locations such as URLs.

A specially formatted URL could crash the application and possibly give the attacker the ability to install and run malware on a system.

Mac OS X versions of Skype 1.5.*.79 and earlier are all affected by the vulnerability, according to the company.

Skype recommends that users download the patch from the company's website or a trusted download site.

Security firm Secunia rated the vulnerability 'highly critical', its second-highest security level. The company credits security researcher Tom Ferris with originally exposing the vulnerability.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

Supply chain attack hits 100 million-download Axios npm package

Supply chain attack hits 100 million-download Axios npm package

APRA pulls data submission system after security pentest

APRA pulls data submission system after security pentest

NAB is co-designing a SIEM with Databricks

NAB is co-designing a SIEM with Databricks

WA local gov entity lost $350,000 in phishing attack

WA local gov entity lost $350,000 in phishing attack

Log In

  |  Forgot your password?