Skype is vulnerable to a heap-based buffer overflow. A remote attacker could send a specially-crafted UDP packet to cause a heap-based overflow. A remote attacker could exploit this vulnerability to cause the Skype client to crash and possibly execute arbitrary code on the system. It is also reported that Skype is vulnerable to a specially-crafted TCP packet exploit that also results in execution of arbitrary code.
https://exchange.xforce.ibmcloud.com/vu ... ties/22850