CVE-2011-2074
Skype 5.x < 5.1.0.922 - Authenticated Remote Code Execution or Denial of Service via Crafted Message
Title source: llmDescription
Unspecified vulnerability in the client in Skype 5.x before 5.1.0.922 on Mac OS X allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via a crafted message.
References (7)
Core 7
Core References
Patch x_refsource_confirm
http://blogs.skype.com/security/2011/05/security_vulnerability_in_mac.html
Various Sources x_refsource_misc
http://www.purehacking.com/blogs/gordon-maddern/skype-0day-vulnerabilitiy-discovered-by-pure-hacking
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/44522
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/47747
Various Sources x_refsource_misc
http://www.theregister.co.uk/2011/05/06/skype_for_mac_critical_vulnerability/
Vendor Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2011/1192
Various Sources x_refsource_misc
http://isc.sans.edu/diary.html?storyid=10837
Scores
EPSS
0.0288
EPSS Percentile
85.3%
Details
Status
published
Products (6)
skype/skype
5.0.0.105 (2 CPE variants)
skype/skype
5.0.0.123 beta
skype/skype
5.0.0.152
skype/skype
5.0.0.156
skype/skype
5.1.0.104
skype/skype
5.1.0.112
Published
May 10, 2011
Tracked Since
Feb 18, 2026