Welcome to P2PNET.net - The original daily p2p and digital news site. Always First!
Register | Login
RIAA News
Cool Stuff
MPAA News
Games / Consoles
News
Music
Movies
TV
Open Source
Mobiles
Advertising
Product News
P2P
Off Topic
Freedom
Politics
Interviews
Security
DRM
Links
Kids and Kartels
Search: 
Search
 
Web P2PNET   
Search: 
Search
Torrent Site Tracker
TekSavvy
 
Add real-time p2pnet headlines to YOUR site ! Click here to download our newsfeed code

‘Extremely critical’ LinkedIn Toolbar flaw

p2pnet news | security:- Microsoft Internet Explorer LinkedIn Toolbar users are being warned to immediately set the kill-bit for the affected ActiveX control following the discovery of an “extremely critical” vulnerability.

Working exploit code is publicly available, says Secunia.

“LinkedIn, the popular business-oriented social networking site, is often used by prospective employers to assess the work experience and industry networks of applicants,” says the post,

“Successful exploitation requires that the user be tricked into visiting a malicious website. The vulnerability is due to an error within the

ActiveX control when handling the ‘Search()’ method.”

The vulnerability is confirmed in version 3.0.2.1098, says Secunia, adding other versions may also be affected.

SlashdotSlashdot it! Add to Technorati Favorites

Also See:
Secunia – LinkedIn Internet Explorer Toolbar IEContextMenu ActiveX Control Code Execution, July 24, 2007


Use free p2pnet newsfeeds for your site. It’s really easy!Subscribe to p2pnet.net | | rss feed: http://p2pnet.net/p2p.rss | | Mobile – http://p2pnet.net/index-wml.php


Net access blocked by government restrictions? Use Psiphon from the Citizen Lab at the University of Toronto. Go here for details. Download here.

HOME

One Response to “‘Extremely critical’ LinkedIn Toolbar flaw”

  1. Mario Sundar Says:

    I’m Mario Sundar, Community Evangelist at LinkedIn.

    We take these kind of vulnerability issues very seriously. We have already released a fix that went out to all IE Toolbar users yesterday. Also, there were no reports of malicious exploits.

Leave a Reply

Please no Spam, flaming (attacking others), trolling, and posting off-topic. Thanks.

    Advertisements
MP3Rocket


Remove Spyware with AntiSpyware for Windows®