Posts tagged as:

vulnerabilities

Microsoft Security Updates for July 2008

July 8, 2008

Microsoft has released four security bulletins for July 2008, two of which are for desktops.
MS08-038 addresses a vulnerability in Windows Explorer and is for Windows Vista and carries an “important” rating. The update includes the original Vista, Vista SP1 and Vista x64.
MS08-037 addresses a vulnerability in DNS and is for Windows 2000 SP4, Windows XP [...]

Read the full article →

Microsoft Security Bulletins for April 2008

April 11, 2008

Another "Super Tuesday" patched this week but I just got around to firing up my Windows VM’s today (actually it’s been about 12 days since I’ve been in Windows). There were ten updates waiting for me on Windows Vista and eight on Windows XP Home, although not all were security related.
This month’s updates included:
KB945553 [...]

Read the full article →

Microsoft Security Bulletins for March 2008

March 11, 2008

Microsoft has released 4 security bulletins for March. All are for Office products and all are rated critical for one or more of the affected products. There weren’t any OS or IE updates this month. Since I don’t run any Office products I didn’t install any Microsoft updates this month, but these were the [...]

Read the full article →

Microsoft Security Bulletins for February 2008

February 13, 2008

Microsoft released 11 security bulletins for February 2008, six are rated critical and five are important.  My Windows XP Pro SP2 installation received the following updates through Windows Update:
MS08-010 – Cumulative Update for Internet Explorer (critical)
MS08-007 – Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution (critical)
MS08-008 -  Vulnerability in OLE Automation Could Allow [...]

Read the full article →

Security Quest #14: Apple Releases Security Patches

December 19, 2007

Apple released Security Update 2007-009 for OS X 10.4.11 Tiger and OS X 10.5.1 Leopard on Monday. The Apple support article lists 41 vulnerabilities that were patched. Patched components include Core Foundation, CUPS, Flash Player Plug-in, Launch Services, perl, python, Quick Look, ruby, Safari, Samba, Shockwave Plug-in, and Spin Tracer. The update requires a [...]

Read the full article →

Security Quest #13: Microsoft Patch Tuesday

December 12, 2007

Yesterday was patch Tuesday for December and Microsoft released seven security bulletins. There weren’t any Office updates but there were updates for all supported OS’s – Windows 2000 Professional SP4 to Windows XP SP2, and Windows Vista – along with updates for Internet Explorer 6 and IE 7. All the updates are available through [...]

Read the full article →

Security Quest #12:Privacy

December 5, 2007

Facebook caused an uproar over the past week with their new Beacon advertising service. Being the last human not to have a Facebook account I didn’t follow the story too much at first, but then it became hard to ignore. At the very least it was a public relations disaster for Facebook, although I [...]

Read the full article →

Security Quest #10: Microsoft Patch Tuesday

November 13, 2007

Another second Tuesday of the month and another bundle of patches from Microsoft was expected. This time around there’s only one update for Microsoft desktops. Windows Vista goes patch-less this month.
MS07-061 is a critical update for Windows XP on the desktop. It’s for both the regular and 64-bit editions. It supersedes MS06-045 and patches a [...]

Read the full article →

Security Quest #7 – New Leopard Security Features

October 24, 2007

Now’s a good time to review the new security features Apple is adding to Leopard. Besides, between the site upgrade and Leopard prep I didn’t have time to put together another security topic.
Apple has 11 new security features listed on their “300+ New Features” page. Some of the non-security features seem to be padding for [...]

Read the full article →

Security Quest #5 – Patch Tuesday

October 10, 2007

Microsoft released five desktop security patches this month, 4 rated as critical and 1 rated important. All supported desktop OS’s get patched along with Internet Explorer and Outlook Express/Windows Mail. Even Mac users may need a patch. They also released one patch that was only for servers.
Bulletin MS07-060 is for Office 2000, Office XP and [...]

Read the full article →

Security Quest #4: OpenID and Weekly Update

October 3, 2007

Back in Security Quest #2 I talked about the PayPal Security Key. The PayPal Security Key can also be registered and used with OpenID through Verisign’s Personal Identity Provider (PIP) program.
OpenID is a URL that serves as an ID to establish your identity although it doesn’t establish trust. OpenID is still in it’s infancy and [...]

Read the full article →