Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Skype Technologies Skype CallTo URI Handler Buffer Overrun Vulnerability

Skype is reported to be prone to a buffer overrun vulnerability.

The vulnerability is reported to occur due to a lack of bounds checking performed on "callto://" URI data, when a callto URI is followed.

This may result in the corruption of sensitive regions of memory. Ultimately, it is conjectured that this issue may be exploited to execute arbitrary code in the context of a user who follows a malicious URI.







 

Privacy Statement
Copyright 2009, SecurityFocus