Crucial Flaws Discovered in Yahoo! IM
08 Jun, 2007, 4:40 pm IST | by
Priyanka Pradhan
|
|
Researchers at eEye Digital Security are reporting multiple vulnerabilities in Yahoo! Messenger, which can be used to remotely execute code. These vulnerabilities have reportedly come from Active X controls, installed in a computer. A Yahoo! spokesperson confirmed the company is looking into a buffer overflow issue in an Active X control. The company also said the vulnerabilities, which have obtained a rating of "high" by eEye Digital Security, were reported to Yahoo! on June 5 but are not known to have been exploited. Version 8.x of Yahoo! instant messaging (IM) client is at risk. In addition, officials from security research firm Secunia say, a boundary error within the Yahoo! Webcam Upload (ywcupl.dll) ActiveX control can be exploited to cause a stack-based buffer overflow by assigning an overly long string to the 'Server' property and then calling the 'Send()' or ' Receive ()' method. A study by Akonix Systems in San Diego (May 2007), a provider of instant messaging security and compliance products, uncovered 170 IM threats—an increase of 73 percent when compared to the number the company found between January and May of 2006. Read more here. |
Tags: Yahoo! Messenger
MAXX Adds Full Touch Mobile MT150 to its Scope
Exploring App Stores: Social Networking Apps for the iPad
Yahoo! Accused of Invading Users' Privacy
Video Calling Using Yahoo! Messenger on iPad 2
CeBIT 2007: Logitech Offers Webcams for Notebooks
Yahoo! Messenger Now Inside Mail
Google’s latest iteration of Android, Ice Cream Sandwich or Android 4.0 is a major overhaul from G...
Leaked Images, Availability, Pricing,
Specs, Pre-order
Top 5 free all-in-one messengers for Windows
The number of instant messaging services have exploded, since the first...
Project Darpan: Digitizing Indian local languages
Compared to the relatively slow adoption rate of the traditional PC, that...
Top 10 tips for Internet Explorer 9
Microsoft’s browser Internet Explorer has been around a while and things
By Tech2

Aashish Shrestha
Mon May 21, 19:43:50
Exploring Apps Store: Apps for the Samsung Galaxy Note
Ida Brown
Mon May 21, 19:04:58
Sony Ericsson Live with Walkman Review
Tauheed Ashraf Sheikh
Mon May 21, 17:50:59
China approves Google's Motorola deal
Leaked S Voice app from S III works on any
Amazon may launch 10.1-inch Kindle Fire by
U.S appeals court okays Apple's bid...
Acer announces the TravelMate P243 notebook
Power efficiency of laptop CPUs to be up...

















Mixx
Facebook
Twitter
Digg
delicious
reddit
MySpace
StumbleUpon
LinkedIn






























































_011517074205_160x90.jpg)















