Release date:
Updated on: 2012-03-30
Affected Systems:
Skype 5.8.0.156
Unaffected system:
Skype 5.8.0.158
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52810
Skype is a free global voice communication software.
The implementation of the Windows v5.6.59.10 & Mac OS v5.5.2340 client of Skype has the memory corruption vulnerability caused by NULL pointer reference. Attackers can exploit this vulnerability by sending specially crafted symbolic messages to cause the affected applications to crash.
<* Source: Ucha Gobejishvili
Link: http://vulnerability-lab.com/get_content.php? Id = 455
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Skype
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.skype.com/