Skype Releases Update for Mac Client, Fixes Vulnerability Uncovered by Pure Hacking
Article by George Norman
On 10 May 2011
Yesterday we were reporting that Skype for Mac is plagued by a critical vulnerability uncovered by Pure Hacking, a group of ethical hackers from Australia. The vulnerability goes something like this: if someone in the Contact list sends the user a specifically crafted message, Skype for Mac would crash. To exploit this vulnerability that someone would have to already be in the Contact list or trick the user into adding him to the list, because by default, Skype for Mac does not accept messages from people who are not in the Contacts list

This vulnerability was addressed by Skype with version 5.1.0.922, but the thing is that users were not prompted to get this update. Skype explained that because there were no reports about this vulnerability being exploited in the wild, users were not presented with a prompt to update to version 5.1.0.922.

Advertising

This is not to say that they could get the update. They could update Skype for Mac to version 5.1.0.922 by manually triggering an update (by clicking Skype -> Check for updates) or by downloading the latest version from Skype.

Skype did not prompt the users to update because it had another update in the pipeline – version 5.1.0.935, update that has just been pushed to all Skype for Mac users. This update, as Skype’s Chief Information Security Officer Adrian Asher explained, includes the security fixes of version 5.1.0.922 and features some additional product fixes. Skype for Mac users will be automatically prompted to get the update; alternatively they can manually trigger an update. Once the majority of users get the update, Skype will release additional information on the vulnerability uncovered by Pure Hacking.

“Once we have seen a large proportion of our Skype for Mac user base have upgraded to this new version, we will provide further details on the vulnerability in the Skype for Mac client that was raised by Pure Hacking,” said Adrian Asher.



Tags: Skype, Skype for Mac, Security
About the author: George Norman
George is a news editor.
You can follow him on Google+, Facebook or Twitter

I Hope you LIKE this blog post! Thank you!
What do YOU have to say about this
blog comments powered by Disqus
Popular News
By George Norman on 17 Aug 2017
With the blockbuster movie season upon us, Sony decided to celebrate the occasion with a sale: the Attack of the Blockbusters Sale that offers discounts of up to 50% (60% if you’re a PlayStation Plus member) on a ton of PS4 video games.
By George Norman on 17 Aug 2017
Samsung’s new T5 portable solid-state drive (PSSD) uses the latest 64-layer V-NAND technology, offers between 250GB and 2TB of storage capacity, has a lightweight and shock-resistant design that’s smaller than the average business card, and delivers industry-leading transfer speeds of up to 540 MB/s.
Related News
By George Norman on 18 Jul 2017
Sure, text remains the main method of communicating with others when using a messenger application like Skype, but if you really want to get the message across, using an emoticon, emoji or sticker can’t hurt.
By George Norman on 17 Jul 2017
If you want top notch protection for your Windows computer, you can’t go wrong by getting something developed by the internationally renowned security company Kaspersky Lab. The problem is that…
By George Norman on 26 Jul 2017
Top-notch real-time protection against viruses doesn’t have to cost money, not if you go with the recently introduced Kaspersky Free antivirus solution. It may not come with a lot of bells and whistles, but it nicely covers all the basics and...
By George Norman on 31 Jul 2017
Are people taking better care of their passwords, or have their password habits changed for the worse? To get an answer to that question, data loss prevention software company Digital Guardian surveyed a thousand people about their password security habits and found that...
Sponsored Links
Hot Software Updates
Top Downloads
Become A Fan!
Link To Us!
Skype Releases Update for Mac Client, Fixes Vulnerability Uncovered by Pure Hacking
HTML Linking Code