AOH :: HP Unsorted S :: TB13573.HTM

Skype DoS



Skype DoS
Skype DoS




1. Skype and Internet Explorer uri handler mechanism memory resources consumption bug:



This will invoke many skype.exe processes and as they are not closed - much memory will be consumed. Such script will be blocked by popup blocker, so it is possible to do it other way:




... I've used about megabyte of such crap


Tested on IE7, WinXP SP2 and skype 3.6.0.216

2. Unexploitable Skype null pointer dereference:

skype:?voicemail

To trigger the bug a right mouse button must be clicked, or menu button selected. Skype should crash :)

Found here: http://www.critical.lt/?opinions/show/1433
credits: Critical Security

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.