EBay Fixes Serious Security Hole in Picture Tool


EBay sellers who use the auction giant's Enhanced Picture Services tool to upload photos to auction pages may be prompted to update the software plug-in the next time they use it, as security experts have discovered a flaw that could be used by online criminals to hijack Microsoft Windows machines if the user browses a specially crafted site with Internet Explorer.

The vulnerability was reported to eBay by researcher Will Dormann at the United States Computer Emergency Readiness Team (US-CERT), a partnership between the Department of Homeland Security and the public and private sectors. Security Fix - Brian Krebs on Computer and Internet Security - (washingtonpost.com)

Linked by shanmuga Monday, 17th July 2006 1:33AM