Unsolved

This post is more than 5 years old

4 Apprentice

 • 

20.5K Posts

2772

June 15th, 2007 18:00

Malicious Code: Yahoo! Messenger Exploits In-The-Wild

Malicious Code: Yahoo! Messenger Exploits In-The-Wild

From Websense Security Labs:

"Full proof-of-concept exploit code was published several days ago for
two vulnerabilities in an ActiveX control included with Yahoo!
Messenger
. Multiple in-the-wild exploits were discovered yesterday, utilizing
this vulnerability. Our scanners are now actively searching for
additional live sites that are attempting to exploit this vulnerability.

Yahoo! has released a security update to address this vulnerability."


Additional details can be found at the following URL:
http://messenger.yahoo.com/security_update.php?id=060707

Further details regarding the first in-the-wild site to the discovered
were posted to the ISC Diary:
http://isc.sans.org/diary.html?storyid=2952

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

June 15th, 2007 18:00

I just upgraded to the latest version, which is reading 8.1.0.402
 
the security articles above weren't explicit, but I'm hoping that's the fixed version
No Events found!

Top