May 2007
Welcome to May's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading IT security testing company. It provides a convenient way to keep up to date with the fast changing world of IT security; this month's edition includes a total of 9 risk issues: 5 High, 2 Low and 2 Informational .
Buffer overflow vulnerability in Roxio's CinePlayer
(High risk) Roxio's CinePlayer contains a buffer overflow vulnerability, which if exploited, could permit malicious users to execute arbitrary code on affected machines 1st May 2007 Read MoreCritical Linux wifi flaw found
(High risk) A critical Linux wifi flaw has been discovered that can enable attackers to gain remote control of a machine, even when it is not on a wifi network 1st May 2007 Read MoreMicrosoft resumes Patch Tuesday
(High risk) Microsoft has resumed Patch Tuesday, after having omitted the monthly bulletin in March. Six flaws have been fixed in the latest patch update, five of which are critical and one important 1st May 2007 Read MoreYahoo! Messenger buffer overflow flaw
(High risk) A highly critical buffer overflow vulnerability has been discovered in Yahoo! Messenger, which if successfully exploited, could result in system compromise 1st May 2007 Read MoreOracle patches 37 vulnerabilities
(High risk) Oracle has issued patches for 37 vulnerabilities in its database and e-business suite as well as JD Edwards and PeopleSoft products 1st May 2007 Read MoreMultiple Cisco wireless vulnerabilities patched
(Low risk) Cisco has released a security bulletin addressing multiple vulnerabilities found in its Wireless Control System prior to version 4.0.96.0 1st May 2007 Read MoreSkype IM worm on the loose
(Low risk) The Pykse-A worm is spreading through Skype IM sessions, masquerading as a link to an adult website 1st May 2007 Read MoreMP has keylogger installed by six year old
(Informational) Guildford MP Anne Milton agreed to leave her computer unattended for 60 seconds as part of a test of House of Commons' IT security by the BBC's Inside Out programme. It took a six year old girl just 15 seconds to install a keylogger onto the PC 1st May 2007 Read MoreWEP encryption cracked in three seconds
(Informational) It has been reported that 128-bit WEP encryption can now be cracked in just three seconds 1st May 2007 Read MoreAbout NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our services page.