VoxxMail > Skype posts "URI arguments" security alert, fix
[ | IP Telephony, VoIP, Broadband | ZDNet.com] The attack requires the targeted user to manually follow a specially crafted malformed link, such as on a web page. Depending on several factors, doing so may result in the initiation of a file transfer, which will be accompanied by the normal Skype file transfer dialogue box.
[Previous] Linksys WIP300 and 330 now shipping everywhere except my ho...
[Next] Is Skype an IT nightmare ?...
Some related posts from Technorati and Google.
[21talks - Telecommunications on steroids] Skype has a hole in its security system: An attacker who constructs a Skype URL that is malformed in a specific way can initiate the transfer of a single named file from one Skype user to another, provided that the sender follows the malicious link and that the recipient has previously authorized the sender.”
[Skype.com] SKYPE-SB/2005-002: Buffer overflow in Skype-specific URI and VCARD ...: overflow when Skype is called upon to handle malformed URLs that are in Skype-specific .crafted Skype-specific URL is clicked or if a specially-crafted .
Reflected tags on Technorati: Blog, Skype, VoxxMail