Skype can't fix security bug without massive code rewrite

    Skype can't fix security bug without massive code rewrite

    Skype can't fix security bug without massive code rewrite


    Posted: 13 Feb 2018

    A security flaw in Skype's updater process can allow an attacker to gain system-level privileges to a vulnerable computer.

    The bug, if exploited, can escalate a local unprivileged user to the full "system" level rights -- granting them access to every corner of the operating system.

    But Microsoft, which owns the voice- and video-calling service, said it won't immediately fix the flaw, because the bug would require too much work.

    Security researcher Stefan Kanthak found that the Skype update installer could be exploited with a DLL hijacking technique, which allows an attacker to trick an application into drawing malicious code instead of the correct library. An attacker can download a malicious DLL into a user-accessible temporary folder and rename it to an existing DLL that can be modified by an unprivileged user, like UXTheme.dll. The bug works because the malicious DLL is found first when the app searches for the DLL it needs.

    Once installed, Skype uses its own built-in updater to keep the software up to date. When that updater runs, it uses another executable file to run the update, which is vulnerable to the hijacking.

    The attack reads on the clunky side, but Kanthak told ZDNet in an email that the attack could be easily weaponized. He explained, providing two command line examples, how a script or malware could remotely transfer a malicious DLL into that temporary folder.

    "Windows provides multiple ways to do it," he said. But DLL hijacking isn't limited to Windows, he said -- noting that it can apply to Macs and Linux, too...


    Read more: Skype can't fix a nasty security bug without a massive code rewrite | ZDNet
    Brink's Avatar Posted By: Brink
    13 Feb 2018


  1. Posts : 7,724
    3-Win-7Prox64 3-Win10Prox64 3-LinuxMint20.2
       #1

    Hi,
    Too much trouble to fix :/
      My Computers


  2. Posts : 26,451
    Windows 11 Pro 22631.3527
       #2

    ThrashZone said:
    Hi,
    Too much trouble to fix :/
    Then MS should remove it.
      My Computer


  3. Posts : 7,724
    3-Win-7Prox64 3-Win10Prox64 3-LinuxMint20.2
       #3

    Hi,
    Too much of a money maker to remove it and too much work to fix it :)
      My Computers


  4. Posts : 27,183
    Win11 Pro, Win10 Pro N, Win10 Home, Windows 8.1 Pro, Ubuntu
       #4

    System32---.dll?
    Must be the desktop version and not the UWP app then, or?
      My Computers


  5. Posts : 7,724
    3-Win-7Prox64 3-Win10Prox64 3-LinuxMint20.2
       #5

    Hi,
    Aren't all cell phones 32 bit and surface versions ?
      My Computers


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 22:45.
Find Us




Windows 10 Forums