By joining our community you will have the ability to post topics and access other forums reserved for members. Registration is quick, simple and absolutely free. Join our community today by clicking here. - Internet Anti-Fraud Center - now open!

 Skype Cross Zone Scripting Vulnerability

View next topic
View previous topic
Post new topicReply to topic
Author Message
Pale Tracker

Joined: 06 Jun 2007
Posts: 872

PostPosted: Mon Jan 21, 2008 6:40 pm Reply with quoteBack to top

Trend Micro:


Skype has yesterday released a security bulletin to deal with a cross-zone scripting vulnerability. Security Bulletin SKYPE-SB/2008-001 addresses the said vulnerability in Skype, which may allow a remote and unauthenticated malicious user to execute arbitrary codes on an affected system.

Skype’s “add video to mood” and “add video to chat” functions were seen as possible areas that attackers could exploit to execute malicious codes on target systems. Because Skype uses Internet Explorer web control to render HTML content, browsing through Skype’s video gallery section and watching videos with arbitrary codes trigger the vulnerability; watching videos in a chat or in a mood message, however, does not.

As of the moment, Skype has rendered inoperative adding videos from the video-hosting service Web site Dailymotion gallery until an official fix has been made available.

Trend Micro advises users of this software to download the necessary patches to fix any vulnerability once they are available from Skype.

Quando omni flunkus moritati.

United Kingdom x2 United States x2 Nigeria
Mortar 's
Closed lad accounts 's

Pith Helmet ARK: Tamale (Ghana) - Porto Novo (Benin): "it is a Hollywood movie"

Get your ninja sword and throwing stars here
NO MENTOR & NEW TO BAITING? Here's how to do it!
View user's profileSend private messageSkype Name
Display posts from previous:      
Post new topicReply to topic

 Jump to:   

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum

E-Mail Header Analysis

All Content © 2003 -
Powered by phpBB © 2001, 2002 phpBB Group :S5: FI Theme :: All times are GMT