internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Internet Explorer 8

Most Popular Software Downloads
Opera
Internet Explorer 7
QuickTime for Windows
Winamp
Mozilla Firefox 3
Ad-Aware 2008 Free
Adobe Flash Player
Paint Shop Pro
Adobe Shockwave Player
AVG Anti-Virus Free
7-Zip

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

'Critical' Buffer Overflow Found in Eudora
Security Flaw Could Lead to Execution of Malicious Code
Ryan Naraine

Security researchers have discovered a "highly critical" security flaw in QUALCOMM's Eudora e-mail client that could lead to the execution of malicious code on vulnerable systems.

Paul Szabo, a computer systems officer at the University of Sydney, reported the flaws in versions 6.1, 6.0.3, and 5.2.1 of Eudora, and warned that Windows users were at risk of complete system takeover.

According to Szabo's advisory, the vulnerability is due to a boundary error within the URL-handling functionality. A malicious hacker could exploit the hole with an e-mail containing a specially crafted link.

"Attachments may be spoofed, even in the latest 6.1 version. Be careful about forwarding messages with attachments, as sensitive/private documents may be sent silently. Be careful about clicking on attachments," said Szabo, who publishes the Secure Your PC site.

Independent research firm Secunia has tagged a "highly critical" rating on the flaw and recommends that Eudora users be wary of other serious vulnerabilities in the mail client.

Officials at QUALCOMM could not be reached for comment at press time.

The San Diego-based QUALCOMM offers Eudora in two versions — a paid commercial option for $50 and an ad-supported (light) mode for free. The company has invested heavily to add anti-spam tools for Windows and Mac users, but a scan of security mailing lists shows the product has been riddled with security issues.

Eudora was created by Steve Dorner at the University of Illinois and released as UIUCMail, one of the first Macintosh e-mail clients. It was originally meant as a freeware product until QUALCOMM acquired the rights to it in 1991 for internal use and eventually extended development to the Windows platform.

News courtesy of internetnews.com.

Contents:
1. Security Flaw Could Lead to Execution of Malicious Code






JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers