21 August 2007

Yahoo Messenger Webcam Vulnerability


Yahoo! Messenger is still suffering from a webcam vulnerability reported on a McAfee security blog earlier this week.

The security bug is described as a 'heap overflow' and can only be exploited if you accept a webcam invitation. Until Yahoo issues a patch, you can avoid the problem by simply not accepting webcam invitations unless you know the person sending the invite. It’s advisable to block outgoing traffic on TCP port 5100 until the vendor patches this vulnerability.