Skype for Mac 5.x < Unspecified Remote Code Execution (credentialed check)

This script is Copyright (C) 2011-2013 Tenable Network Security, Inc.

Synopsis :

The remote Mac OS X host has an application that allows arbitrary
code execution.

Description :

According to its version, the instance of Skype installed on the
remote Mac OS X host reportedly allows an attacker to send a specially
crafted message to a user on the affected host and execute arbitrary

Note that by default, such a message would have to come from someone
in a user's Skype Contact List.

See also :

Solution :

Upgrade to Skype for Mac or later.

Risk factor :

Medium / CVSS Base Score : 5.1
CVSS Temporal Score : 4.2
Public Exploit Available : true

Family: MacOS X Local Security Checks

Nessus Plugin ID: 53844 ()

Bugtraq ID: 47747

CVE ID: CVE-2011-2074