Thursday, June 12, 2008

Vulnerability In OpenOffice.org Software

There's been found a vulnerability in OpenOffice.org software file handling. Vulnerability may allow a remote unprivileged user who provides a OpenOffice.org document that is opened by a local user to execute arbitrary commands on the system with the privileges of the user running OpenOffice.org.

Vulnerable are OpenOffice.org versions between 2.0 and 2.4. Users of these versions are instructed to update their software to version 2.4.1.

More information here.

Tuesday, June 10, 2008

New Version of Apple QuickTime Released

Apple has released version 7.5 of QuickTime Player. This version fixes several vulnerabilities related to picture, audio and video content handling. These vulnerabilities make it possible to cause an unexpected application termination and give rights for arbitrary code execution.

Vulnerable versions are all versions below 7.5. Users are advised to update their software according to the instructions here.

Monday, June 9, 2008

New Updates For Windows Coming On Tuesday

Microsoft is going to release new updates for Windows operating systems. Update packet to be released tomorrow (Tuesday 10th of June) include seven updates. Three of the updates are critical, another three important and one moderate.

Critical updates fix vulnerabilities in Bluetooth connections, DirectX graphics and Internet Explorer browser.

In practice, found vulnerabilities affect all supported Windows operating systems. Critical vulnerabilities affect also to Windows Vista. Windows Server 2008 operating system with Server Core installation is only affected by Internet Explorer's vulnerability.


For more information about these coming updates please see
Microsoft Security Bulletin Advance Notification for June 2008.

Thursday, June 5, 2008

McAfee's Report Identifies Dangerous Web Domains

McAfee has released it's "Mapping the Mal Web Revisited" report. Now in its second year report tries to identify the domains populated with the highest concentration of risky sites.

McAfee found the most dangerous domains to navigate to are ".hk" (Hong Kong), ".cn" (China) and ".info" (information). Of all ".hk" sites McAfee tested, it flagged 19.2 percent as dangerous or potentially dangerous to visitors; it flagged 11.8 percent of ".cn" sites and 11.7 percent of ".info" sites that way. The most popular domain, .com, is the ninth riskiest overall with a little over five percent share.

The least-risky domain names are ".fi" (Finland), ".gov" (government use) and ".jp" (Japan). ".fi" was the safest domain also last year. This time 0.05 percent of ".fi" domain sites were flagged dangerous, as much as government sites in ".gov" domain. Of ".jp" domain sites 0.13 percent were flagged potentially dangerous.



Source

Wednesday, June 4, 2008

Service Pack 3 For Windows XP Contains Vulnerable Flash

Last week there was much discussion about Flash vulnerabilities and surprise, it's subject also now. It's been found out that XP service pack 3 (SP3) installs an older vulnerable version of the flash player (9.0.115.0). That makes SP3 users vulnerable to these vulnerabilities fixed in 9.0.124.0 version. Microsoft has documented this in its security bulletin MS06-069

SP3 users are advised to update their Flash players according to Adobe's instructions.

Source

Tuesday, June 3, 2008

Vulnerabilities In VMWare Software

There's been found two vulnerabilities in VMWare software. Both make it possible to execute attacker's code on workstation. First one is in folder handling and the other one in VMCI (Virtual Machine Communication Interface) functionality.

Vulnerable software:
- VMware Workstation 6.0.3 and earlier versions
- VMware Player 2.0.3 and earlier versions
- VMware ACE 2.0.3 and earlier versions
- VMware Fusion 1.1.1 and earlier versions

VMware has released new versions which can be downloaded from the links below:
- VMware Workstation 6.0.4
- VMware Player 2.0.4
- VMware ACE 2.0.4
- VMware Fusion 1.1.3


More information regarding found two vulnerabilities and their fixes can be read here.

Monday, June 2, 2008

Web Attacks Are Concentrated - China And USA The Worst Ones

New report tells that attacks in internet keep concentrating strongly to a couple of countries. On the top of the list is China and a bit surprisingly the United States is on the second place. It looks though that there's a reason for this phenomenon.

The report has been collected by web technical company Akamai which has servers over the world. According to Akamai 17 (16.77) percentage of attacks came from China on the first quarter of 2008. Attacks from the United States was 14 (14.33) percentage.

Attacks seem to concentrate since 75% of them came from 10 countries. For example Japan (3.56), Brazil (4.75), Argentina (5.65), Venezuela (8.89) and Taiwan (11.82) are on this list.

Akamai tells that big amount of attacks are from malware programs that are years old. New protectors should basically catch these easily. This may tell that base of the attacks is a large pool of Windows systems which security is left without attention.