OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Eudora security bug - executes URL
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Eudora security bug - executes URL


  • To: NTBUGTRAQLISTSERV.NTBUGTRAQ.COM
  • Subject: Eudora security bug - executes URL
  • From: "Stout, Bill" <StoutBPIOS.COM>
  • Date: Fri, 7 Aug 1998 12:52:45 -0400
  • Reply-To: "Stout, Bill" <StoutBPIOS.COM>
  • Sender: Windows NT BugTraq Mailing List <NTBUGTRAQLISTSERV.NTBUGTRAQ.COM>

Security hole is discovered on another e-mail program

8/7/98

"...The Eudora flaw makes it possible for a malicious computer user with
little or no programming expertise to booby-trap an e-mail message by
inserting a seemingly harmless link to an Internet location that in fact
executes malignant code. This could permit an attacker to destroy or
steal data or to otherwise tamper with a personal computer.

The security flaw was discovered early this week by a
Massachusetts-based software company. There are no known instances of
anyone actually taking advantage of the weakness to send damaging
e-mail. Qualcomm Corp., which makes Eudora, announced Thursday that a
repaired version of the software would be made available on its Web site
this afternoon...."

http://www.mercurycenter.com/premium/business/docs/internet07.htm

Bill Stout
______________________________________________________________________
Responses Kensig: 10 pro, 2 con  Subj: 0 (!)   Verdict: Too distracting