“For this specific security issue, these impacts could only be possible if an attacker is successful in prompting someone to view malicious HTML code, most likely executed by getting a person to visit their web page”, Yahoo stated in a security advisory on the matter. eEye Digital Security Inc., a third-party digital security research organization informed Yahoo about the flaws who then patched Messenger a day later. “Over the next several weeks, users worldwide will be prompted to update to a new version of Yahoo! Messenger upon signing into the service,” Yahoo announced on its messenger website. “If you choose not to update, the vulnerability will still exist.” You can download the latest version of Yahoo! Messenger from http://messenger.yahoo.com/download.php.
-Ted Eiler
www.tecs-onsite.com
800.993.TECS (8327)
tedeiler@tecs-onsite.com