Crucial Flaws Discovered in Yahoo! IM
By: Priyanka Pradhan
| Jun 08, 2007
Researchers at eEye Digital Security are reporting multiple vulnerabilities in Yahoo! Messenger, which can be used to remotely execute code. These vulnerabilities have reportedly come from Active X controls, installed in a computer.
A Yahoo! spokesperson confirmed the company is looking into a buffer overflow issue in an Active X control. The company also said the vulnerabilities, which have obtained a rating of "high" by eEye Digital Security, were reported to Yahoo! on June 5 but are not known to have been exploited. Version 8.x of Yahoo! instant messaging (IM) client is at risk.
In addition, officials from security research firm Secunia say, a boundary error within the Yahoo! Webcam Upload (ywcupl.dll) ActiveX control can be exploited to cause a stack-based buffer overflow by assigning an overly long string to the 'Server' property and then calling the 'Send()' or ' Receive ()' method.
A study by Akonix Systems in San Diego (May 2007), a provider of instant messaging security and compliance products, uncovered 170 IM threats—an increase of 73 percent when compared to the number the company found between January and May of 2006.
Read more here.
Tags: [ Yahoo! Messenger ]
| Ads by Google | ||
EVR Krishnan @ Jun 09, 2007
LATEST NEWS
- Virgin Mobile Launches Data Services
- Star Launches Online TV Service
- China Paper Says Web Filter Only a Matter of Time
- No 'Pinda daan' Online Say Hindu Priests in Gaya
- Gamer Steals From Virtual World to Pay Real Debts
- Largest Commercial Satellite For Cellphones Launched
- MySpace Suicide Conviction Tentatively Dismissed
- Shared Keyboards Are Hot Spots For Infection
- Samsung Marine Launched in India
- Spammers Ride on Jackson Death
| Ads by Google | ||
RELATED
Hot Searches & Keywords :
5 megapixel
AMD
ATI
Acer
Adobe
Airtel
Apple
Asus
Benq
Blackberry
Blizzard
Blu-Ray
Bluetooth
CES 2007
Canon
Capcom
Creative
DVD
Dell
E3 2007
E3 2009
EA
Facebook
Firefox
Google
HP
ITunes
Intel
Internet
Ipod
LCD
LG
Lenovo
Linux
Logitech
Microsoft
Mobile
Mobile Games
Mobile Phone
Mobile Phones
Motorola
Mp3
Myspace
Nintendo
Nokia
Nvidia
PC
PMP
PS2
PS3
PSP
Philips
Samsung
Sandisk
Skype
Sony
Sony Ericsson
Toshiba
Touchscreen
Ubisoft
Valve
Vista
Voip
Walkman
Website
Wii
Windows
Windows Mobile
Windows Vista
WoW
Xbox 360
Xbox Live
Xbox360
Yahoo!
Youtube
digicam
digital camera
iPhone
iPhone 3G
mp3 player
social networking site
test
windows mobile 6.1
yahoo
| Ads by Google | ||
|
|
Sections
Products
Camcorders |
Controllers |
CPUs |
Desktop PCs |
Digital Cameras |
Digital Video Recorders |
DVD Players |
Games |
Gaming Consoles |
General |
GPS Systems |
Handhelds / PDAs |
Hard Drives |
Headphones & Headsets |
HiFi Audio Systems |
Home Theater Systems |
Input Devices |
Internet |
Laptops |
lenovo |
Low Level Components |
Mac Systems |
Mobile Phone Accessories |
Mobile Phones |
Monitors |
Motherboards |
MP3 / Audio Players |
Multi-Function Devices |
Networking |
Optical Drives |
PC Accessories |
PC Add-on Cards |
PC Cabinets |
PC Games |
Printers |
Projectors |
RAM Modules |
Scanners |
Software |
Speakers |
Telecom |
TVs |
Video Players |


