Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

February 11th, 2012, 12:13 GMT · By Eduard Kovacs

BLOG

Video PoC: Buffer Overflow Flaw in Yahoo Messenger

SHARE:

Adjust text size:

Vulnerability Lab researchers released a proof-of-concept video to reveal a buffer overflow issue present in Yahoo Messenger, the popular instant messaging client.

The high severity security hole was identified by Manideep, also known as z3r0 erR0R, who proved that when users try to send an image file on chat rooms in a certain way, the application crashes.

While Yahoo Messenger does not allow customers to drag and drop files into group chat rooms, if the file is copied and pasted, the program crashes. It's uncertain if Yahoo has been informed of the vulnerability.

A similar proof-of-concept video was released a few days ago by another Vulnerability Lab expert, Aditya Gupta, who demonstrated that by utilizing a cleverly designed game, a cybercriminal could trick the user into making arbitrary Google+ posts, trapping him in a sophisticated clickjacking scheme.
FILED UNDER:
POC
Yahoo
buffer overflow

TELL US WHAT YOU THINK:

1,287 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Video: Anonymous Threatens the Government of Israel

Video: Boston Police Responds to Anonymous Hacking

Video: Google Wallet Contains PIN Exposure Flaw

Video PoC: Vulnerability in Cyberoam Central Console 2.0

Video PoC: Attackers Post on Google+ on User’s Behalf

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM