Sign in
|
Help
Donna's SecurityFlash
PC & Internet Security Blog
This Blog
Home
Contact
About
Syndication
RSS for Posts
Atom
RSS for Comments
Email Notifications
Go
News
CoU IP Blocklist for Kaspersky is ready!
CoU IP Blocklist Updater available
Windows 7 on my Dell PCs
Installers Hall of Shame - Patchers Demand Security Updates Only
This blog has been
KISS'ed
Do you use Online Armor Paid Edition? If so, take advantage of
free IP Blocklist for OA Firewall
CoU Poll:
Do you use Twitter?
Find out who's in the "
Installers Hall of Shame (Unwanted add-on)"
CoU Poll:
Windows 7...your initial thoughts
Are you using Outpost Firewall Pro or Suite?
Get CoU IP Blocklist for Outpost then
- it's free
Validate Windows and Office using Opera and Firefox
Tools to scan for missing patches and insecure versions
What to do before “Patch Tuesday”?
OpenDNS DNS servers: 208.67.222.222
208.67.220.220
Blog Search Form
Go
My CoU Blog
Loading...
Today's Updates
Loading...
Bright Hub
Loading...
Apple iLife, Opera Browser, OpenOffice, StarOffice & WordPress Vulnerabilities
Apple iLife iPhoto Photocast XML "title" Format String Vulnerability
- a vulnerability in iLIfe iPhoto, which potentially can be exploited by malicious people to compromise a user's system has been discovered by Kevin Finisterre. Possible solution is do not follow or subscribe to untrusted links to Photocast feeds. Affected software is Apple iLife iPhoto 6.x. View the advisory
here
.
Opera Browser Two Vulnerabilities
- Two vulnerabilities have been reported in Opera, which can be exploited by malicious people to compromise a user's system. iDefense Labs discovered the vulnerabilities. Solution is upgrade to latest version. Advisory is
here
(Secunia) and Opera -
here
and then another
here
.
OpenOffice WMF/EMF Processing Buffer Overflow Vulnerabilities
- John Heasman has reported some vulnerabilities in OpenOffice, which can be exploited by malicious people to compromise a user's system. Solution is apply fixes or upgrade to v2.1.0. Advisory
here
.
StarOffice WMF/EMF Processing Buffer Overflow Vulnerabilities
- John Heasman has reported some vulnerabilities in StarOffice, which can be exploited by malicious people to compromise a user's system. This is solved if you apply the patches.
View
the advisory.
WordPress User Account Enumeration Weakness
- Kad has discovered a weakness in WordPress, which can be exploited by malicious people to identify valid user accounts. Possible work-around is edit the source code to ensure that a single general error message is returned on a failed login or restrict access to the "wp-login.php" script (e.g. with ".htaccess"). Advisory
here
.
A vulnerability has been reported in
WordPress
, which has unknown impacts but solved by upgrading to lastest version. View the advisory
here
.
Published
Sat, Jan 6 2007 0:23 by
donna
Filed under:
Advisories