Security

Adobe has released security bulletins to alert users of critical and important vulnerabilities in multiple products. The following products are affected:

Severity: High 9 August, 2011 Summary: This vulnerability affects: The DNS service that ships with the Server versions of Windows How an attacker exploits it: By sending specially crafted DNS queries Impact: In the worst case, an attacker gains complete control of your DNS server What to do: Deploy the appropriate Windows  update immediately, or [...]

Read more at: WatchGuard Security Center
Continue reading

Severity: High 9 August, 2011 Summary: This vulnerability affects: All current versions of Internet Explorer, including IE9 How an attacker exploits it: In most cases, by enticing one of your users to visit a malicious web page Impact: Various, in the worst case an attacker can execute code on your user’s computer, gaining complete control of [...]

Read more at: WatchGuard Security Center
Continue reading

Are you ready for a long week of patching? Microsoft’s August Patch Day is live, with thirteen security bulletins that fix 22 security vulnerabilities in their popular software packages. The flaws affect many Microsoft products, including: Windows and its many components (like DNS server) Internet Explorer Visio the .NET Framework and Visual Studio. Microsoft only rates [...]

Read more at: WatchGuard Security Center
Continue reading

After every light Microsoft Patch Day, you can almost always expect a much bigger one to follow. August is no exception, with an expected dozen Microsoft Security Bulletins. According to their advanced Notification post, Microsoft plans to releases twelve bulletins next Tuesday, fixing vulnerabilities in Windows, Internet Explorer (IE), Office, the .NET Framework, and some [...]

Read more at: WatchGuard Security Center
Continue reading

Apple has released QuickTime 7.7 to address multiple vulnerabilities. These vulnerabilities may allow an attacker to execute arbitrary code or cause a denial-of-service condition.

US-CERT encourages users and administrators to review Apple Support Article HT4826 and apply any necessary updates to help mitigate the…

Read more at: US-CERT Current Activity
Continue reading

Microsoft has released updates to address vulnerabilities in Microsoft Windows, Internet Explorer, Microsoft Office, Microsoft .NET Framework, and Microsoft Developer Tools as part of the Microsoft Security Bulletin Summary for August 2011. These vulnerabilities may allow an attacker to execute…

Read more at: US-CERT Current Activity
Continue reading

TimThumb, a PHP script that is reused in many popular themes for the WordPress blog software, contains a vulnerability that allows a remote attacker to upload arbitrary PHP code to an affected site.

US-CERT encourages users and administrators to:

Google has released Chrome 13.0.782.107 for Windows, Mac, Linux, and Chrome Frame to address multiple vulnerabilities. These vulnerabilities may allow an attacker to perform a cross-site scripting attack, or to execute arbitrary code.

US-CERT encourages users and administrators to review the Google Chrome Releases

Read more at: US-CERT Current Activity
Continue reading

Cisco has released a security advisory and an applied mitigation bulletin to address vulnerabilities in Cisco TelePresence Recording Server Software Release 1.7.2.0. Successful exploitation of these vulnerabilities may allow an attacker to bypass security restrictions or take control of the affected device.

US-CERT encourages system administrators to review the

Read more at: US-CERT Current Activity
Continue reading