ISC DHCP Server Host Definition Remote Denial Of Service Vulnerability
Read more »Vuln: ISC DHCP Server Host Definition Remote Denial Of Service Vulnerability
Oracle issues quarterly patches, fixes database flaws
The database giant repaired critical flaws in Oracle Database, BEA WebLogic and Oracle E-Business Suite.
Read more »Vuln: Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
Read more »Vuln: Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
Read more »Vuln: Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
Read more »Bugtraq: [USN-803-1] dhcp vulnerability
[USN-803-1] dhcp vulnerability
Read more »Mozilla warns of critical Firefox JavaScript vulnerability
Attackers could exploit the flaw by tricking a user into viewing a website with the malicious code.
Read more »Microsoft Patches Nine Security Flaws
Microsoft Corp. today issued software updates to plug at least nine different security holes in its various Windows operating systems and other software. Today's patch batch includes fixes for two very serious flaws that are actively being exploited by attackers to break into vulnerable PCs. Redmond issued patches to fix the vulnerability in itsVideo ActiveX Control for Internet Explorer, as well as the DirectShow flaw in Windows. Criminals currently are using both security holes to plant rogue software on PCs when users visit certain hacked or malicious Web sites. Contrary to what Microsoft itself said, the company did not release an official patch to plug the other ActiveX flaw hackers are actively exploiting -- which I first wrote about yesterday. Instead, it has released an interim workaround to blunt the threat from that weakness. Unfortunately, someone at Redmond seems to be a little confused about this point. In its advisory,
Microsoft repairs critical DirectShow, Video ActiveX vulnerabilities
The software giant issued six updates this week as part of its Patch Tuesday updates. Three bulletins were rated critical.
Read more »Bugtraq: ZDI-09-045: Microsoft DirectShow Quicktime Atom Parsing Memory Corruption Vulnerability
ZDI-09-045: Microsoft DirectShow Quicktime Atom Parsing Memory Corruption Vulnerability
Read more »