∞ Skype for Mac requires manual update to fix security vulnerability

Security researcher Gordon Maddern writes about a security vulnerability in Skype for Mac:

“About a month ago I was chatting on skype to a colleague about a payload for one of our clients. Completely by accident, my payload executed in my colleagues skype client.“I decided to investigate a little further and found that the Windows and Linux clients were not vulnerable. It was only the Mac skype client that seemed to be affected.”

Maddern says that he reported the issue to Skype, which corrected the problem in build 5.1.0.922. This build is available manually (you can download a new version of the client from Skype’s Web site if you have trouble downloading it through the Skype menu’s “Check for Updates.”



  • http://twitter.com/mikeeyes Michael Marino

    “Completely by accident, my payload executed in my colleague’s skype client.” Sure…by accident. I bet it has never happened before.

    • Peter Cohen

      [not a euphemism]

    • http://twitter.com/Brad_Strickland Brad_Strickland

      I think they have a pill for that now.

  • MikeP

    Upgraded back to 2.8 today. It’s like stepping back to the future