All the latest UK technology news, reviews and analysis

Skype patches Mac OS X security flaw

by Shaun Nichols

06 Oct 2006

Be the first to comment

  • Tweet this
Skype has release a patch for a vulnerability in its VoIP software for Mac OS X
The Skype vulnerability could allow an attacker to execute code

Skype has release a patch for a vulnerability in its VoIP software for Mac OS X. The flaw does not affect Windows, Linux or PocketPC versions of Skype.

The vulnerability could allow an attacker to use a specially crafted Skype URL to gain access to a system and execute code. For the vulnerability to be exploited, the user would need to click on the malicious link in another application.

Skype said that the vulnerability lies within the program's URI handler, a component that decodes file locations such as URLs.

A specially formatted URL could crash the application and possibly give the attacker the ability to install and run malware on a system.

Mac OS X versions of Skype 1.5.*.79 and earlier are all affected by the vulnerability, according to the company.

Skype recommends that users download the patch from the company's website or a trusted download site.

Security firm Secunia rated the vulnerability 'highly critical', its second-highest security level. The company credits security researcher Tom Ferris with originally exposing the vulnerability.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

27%

2%

13%

58%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

X2 PMO lead, Investment Banking, London up to £495 per day

X2 PMO lead, Investment Banking, London up to £495 per...

SEO analyst - Retail ecommerce - Hertfordshire. £35-55k

SEO analyst - Retail E-commerce - c35-55k - Hertfordshire...

ICT Technician

ICT Technician Leicester £10,000 per annum...

Oracle Performance Tuning, Oracle, Engineering

Oracle Performance Tuning, Oracle, Tuning, Engineering...

To send to more than one email address, simply separate each address with a comma.