Welcome to October's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading Internet security testing company. It provides a convenient way to keep up to date with the fast changing world of Internet security; this month's edition includes a total of 11 risk issues: 7 High, 1 Medium, 0
Low and 3 Informational.
October 2005
DoS goes mobile
(Medium risk)
A failure in the OS to handle certain filename characters in Bluetooth OBEX transfers may cause a DoS attack on certain models of Nokia mobile phones.
Read More
|
Cisco woes
(High risk)
The Cisco IOS Firewall Authentication Proxy for FTP and/or Telnet Sessions feature in specific versions of Cisco IOS software is vulnerable to a remotely-exploitable buffer overflow condition.
Read More
|
Instant messages may bring instant problems
(Informational)
The coming of age of IM viruses.
Read More
|
Adware/spyware beware!
(Informational)
Adware and spyware programs could face multiple law suits from computer users.
Read More
|
Apple fixes flaws
(High risk)
Mac OS fixes continue to be released, following a major release in August 2005.
Read More
|
Cisco woes
(High risk)
The Cisco IOS Firewall Authentication Proxy for FTP and/or Telnet Sessions feature in specific versions of Cisco IOS software is vulnerable to a remotely-exploitable buffer overflow condition.
Read More
|
Firefox vulnerability
(High risk)
More troubles for the folks at Mozilla Foundation as another vulnerability is found in the popular browser Firefox.
Read More
|
More Firefox vulnerability
(High risk)
Yet another Mozilla Firefox vulnerability is discovered: IDN "Host:" Buffer Overflow, which allows an attacker to remotely execute arbitrary code on an affected host.
Read More
|
New phish on the block
(Informational)
New phishers deceive with phony certificates.
Read More
|
Real issues with RealPlayer
(High risk)
Serious troubles are brewing in some versions of RealPlayer. Worse, this is purportedly a zero-day exploit as the researcher posted the discovery before a fix was found.
Read More
|
Local Vulnerability makes Sun go loco
(High risk)
A local vulnerability has been discover on Solaris Xsun and Xprt that may allow Privilege Escalation.
Read More
|
About NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our
services page.