Archive for the 'Security-Vulnerabilities' Category


Adobe Acrobat reader update

Wednesday, July 12th, 2006

On the heels of yesterdays massive update day from Microsoft, Adobe has released an update for the free Adobe Reader. The Adobe reader is one of those ALMOST essential applications that MOST everyone has installed. So, this will be of particular interest to MOST computer users. A SERIOUS security flaw (They’re tagging [...]

Popularity: 1% [?]

Microsoft updates are out for July

Tuesday, July 11th, 2006

and they affect no fewer than 18 issues in Office and Windows. 13 issues are tagged as critical, others as important. They are all bundled into 7 update downloads. 8 vulnerabilities within Excel have been addressed in all of this. Office 2000 users will have to manually update (Office XP/2003 updates [...]

Popularity: 1% [?]

Fasten your seatbelts - Browser vulnerability a day to be announced in July

Monday, July 3rd, 2006

I hope there aren’t too many browser developers that have planned on taking July off….. I ran across browserfun.blogspot.com where it is planned to release information on a web browser vulnerability EACH DAY for the month of July. This comes to us from HD Moore of Metasploit. Judging from This securityfocus article, most [...]

Popularity: 1% [?]

Exploit in the wild for Apple vulnerability

Friday, June 30th, 2006

A couple days ago there was a release of Mac OS X 10.4.7 which addressed several security flaws. There is now an exploit published for one of these vulnerabilities. The attacker using this exploit could gain remote root (administrator) access to the machine. So, don’t delay any further on patching. No [...]

Popularity: 1% [?]

OpenOffice.org security update

Friday, June 30th, 2006

Version 2.0.3 of OpenOffice.org has been released. It includes quite a few bugfixes, including three security related fixes. The security vulnerabilities were apparently found in an internal audit. One of the improvements in 2.0.3 is an integrated update check, to be able to check for available updates directly from within OpenOffice. [...]

Popularity: 1% [?]

Exploits a plenty - IE / Excel (Firefox?)

Thursday, June 29th, 2006

There are a number of vulnerabilities that are currently unpatched, but have working publicly known exploits for Excel (*2) and Internet Explorer (2 vulnerabilities here as well.) Proof of Concept code has been released for both the Excel and Internet Explorer vulnerabilities. This means, with the code publicly available, it won’t be long [...]

Popularity: 1% [?]

Microsoft security roundup

Monday, June 26th, 2006

OK - there have been a number of Excel problems floating around in the last week - week and a half. Securiteam blog has a FAQ on the Excel 0-day vulnerabilities with Excel and Excel Viewer Incidents.org kindly gives us a scoresheet documenting the three different vulnerabilities that have been recently exploited. [...]

Popularity: 1% [?]

Big Windows June update day

Tuesday, June 13th, 2006

Updates for Windows for the month of June are out today and it looks like some list! 12 updates covering 20 or more vulnerabilities. MANY of these are tagged as critical. (Critical vulnerabilities are considered remotely exploited or with little (or no) user interaction.) Sans has a good listing of the [...]

Popularity: 1% [?]

Windows 98 won’t see the MS06-15 patch

Friday, June 9th, 2006

It turns out that Windows 98 is just too hard for Microsoft to support with a security patch for MS06-15 now. The official support period ends in July, but they’ve announced that this one won’t be getting a patch as the changes would be just too substantial. Some of the mitigation suggestions involve [...]

Popularity: 1% [?]

Pretty, shiny usb drive is all it takes to compromise security….

Thursday, June 8th, 2006

Sometimes you just want to cry… This writeup is an example of the “soft underbelly” of every network’s security plan… the users. Basically, you have a group that was hired to do a computer security audit of a credit union. They were told that some of the main concerns were social engineering (easy [...]

Popularity: 1% [?]

Google
 
Web www.averyjparker.com

Internet Storm Center Infocon Status