December 2005
Welcome to December's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading IT security testing company. It provides a convenient way to keep up to date with the fast changing world of IT security; this month's edition includes a total of 15 risk issues: 9 High, 3 Medium, 1 Low and 2 Informational .
Avaya VPNRemote VPN Client Password Disclosure vulnerability
(Low risk) NTA Monitor has discovered a password disclosure issue in the Avaya VPNRemote VPN client 30th December 2005 Read MoreCisco Security Alert
(High risk) A locally exploitable vulnerability in various Cisco CSA products has been reported by the French security firm FrSIRT. 30th December 2005 Read MoreFlaws in Ethereal
(Medium risk) Multiple security vulnerabilities have been discovered in Ethereal 30th December 2005 Read MoreOverhaul for Firefox
(Medium risk) Firefox 1.5 is now available for download, marking the end of a thriving year for the browser. 30th December 2005 Read MoreGoogle Mini Search Appliance Multiple Vulnerabilities
(High risk) Multiple flaws have been discovered in Google's Mini Search Appliance 30th December 2005 Read MoreISAKMP Flaws in Symantec products
(Medium risk) While testing against a range of nearly 5000 potential ISAKMP vulnerabilities, Symantec uncovered a buffer overflow flaw that affects some of its products. 30th December 2005 Read MoreISAKMP advisory
(Informational) CERT-FI and NISCC have released a joint advisory disclosing multiple vulnerabilities in implementation of the ISAKMP Protocol 30th December 2005 Read MoreApple's iTunes 6 vulnerability
(High risk) A critical vulnerability has been found in some versions of Apple's popular iTunes that could allow attackers to remotely take over a user's computer. 30th December 2005 Read MoreLotus Domino
(High risk) Several vulnerabilities have been discovered in IBM's Lotus Domino and Lotus Domino Web Access, which could result in Denial of Service attacks. 30th December 2005 Read MoreMicrosoft Patch Train
(High risk) A lone passenger on the regular MS Patch Train this month. A critical one though. 30th December 2005 Read MoreOpera Flaw
(High risk) The security firm Secunia has reported a vulnerability in Opera, which can be exploited by people to compromise a user's system. 30th December 2005 Read MorephpBB flaw
(High risk) Some vulnerabilities have been discovered in the popular Open Source bulletin board package phpBB. 30th December 2005 Read MoreQuickTime
(High risk) Multiple vulnerabilities in Apple QuickTime have been reported that could result in Denial of Service to System Access. 30th December 2005 Read MoreSCO OpenServer update for Multiple Packages.
(High risk) SCO has issued a maintenance pack for OpenServer that fixes various vulnerabilities. 30th December 2005 Read MoreAbout NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our services page.