Advisory

Update To Security Advisory 943521

October 25, 2007

The Microsoft Security Response Center (MSRC) This week we became aware of publicly disclosed exploit code being used in limited attacks on customers. This change in the threat landscape has prompted us to update last week’s Security Advisory 943521 and triggered our Software Security Incident Response Plan (SSIRP). Third party applications are currently being used [...]

Read the full article →

FeedSmith Plugin for FeedBurner. Security Update

October 8, 2007

Potential security vulnerability Some WordPress plugins that permit the entry of user-entered values, such as older versions of FeedSmith, can be vulnerable to what is called a “cross-site request forgery.” Without getting overly technical, this permits someone to change WordPress plugin settings on your system without you noticing during the time you are signed into [...]

Read the full article →

FireFox, Thunderbird, Opera, Critical Vulnerabilities

July 19, 2007

Secunia Advisory: SA26095 Mozilla Firefox Multiple Vulnerabilities Description: Some vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to conduct spoofing and cross-site scripting attacks and potentially to compromise a user’s system. 1) Various errors in the browser engine can be exploited to cause memory corruption and potentially to execute [...]

Read the full article →

Microsoft Security Advisory (927891) Fix for Windows Installer (MSI)

May 23, 2007

Microsoft TechNet. May 22, 2007 Security Advisory The update addresses the following issue: Your system may appear to become unresponsive when Windows Update or Microsoft Update is scanning for updates that use Windows installer, and you may notice that the CPU usage for the svchost process is showing 100%. When you try to install an [...]

Read the full article →

Opera Vulnerability, Update available

May 21, 2007

Opera Torrent File Handling Buffer Overflow Vulnerability. Advisory: Malicious torrent files can execute arbitrary code in Opera Severity: Highly critical Opera Software has released Opera 9.21 with a fix for this vulnerability. Opera Downloads

Read the full article →

Microsoft Security Bulletin Advance Notification

April 1, 2007

Microsoft TechNet Updated: April 1, 2007 On Tuesday 3 April 2007 Microsoft is planning to release: Security Updates One Microsoft Security Bulletin affecting Microsoft Windows. The highest Maximum Severity rating for these is Critical. These updates will require a restart. These updates will be detectable using the Microsoft Baseline Security Analyzer. Microsoft Windows Malicious Software [...]

Read the full article →

Latest on security update for Windows Animated Cursor Vulnerability

April 1, 2007

We have some new information tonight on the status of the security update that we’re working on that addresses the vulnerability in Windows Animated Cursor Handling. From our ongoing monitoring of the situation, we can say that over this weekend attacks against this vulnerability have increased somewhat. Additionally, we are aware of public disclosure of [...]

Read the full article →

Windows Animated Cursor Handling Vulnerability

March 29, 2007

Microsoft Security Advisory (935423) Vulnerability in Windows Animated Cursor Handling Published: March 29, 2007 Microsoft is investigating new public reports of attacks exploiting a vulnerability in the way Microsoft Windows handles animated cursor (.ani) files. In order for this attack to be carried out, a user must either visit a Web site that contains a [...]

Read the full article →

Microsoft Security Bulletin Advance Notification

February 8, 2007

Microsoft TechNet Updated: February 8, 2007 On 13 February 2007 Microsoft is planning to release: Security Updates Five Microsoft Security Bulletins affecting Microsoft Windows. The highest Maximum Severity rating for these is Critical. These updates will be detectable using the Microsoft Baseline Security Analyzer. Some of these updates will require a restart. Two Microsoft Security [...]

Read the full article →

Microsoft Security Bulletin Advance Notification

January 4, 2007

Microsoft TechNet Updated: January 5, 2007 On 9 January 2007 Microsoft is planning to release: Security Updates One Microsoft Security Bulletin affecting Microsoft Windows. The highest Maximum Severity rating for this is Critical. This update will be detectable using the Microsoft Baseline Security Analyzer and the Enterprise Scan Tool. This update will require a restart. [...]

Read the full article →