Welcome to May's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading Internet security testing company. It provides a convenient way to keep up to date with the fast changing world of Internet security; this month's edition includes a total of 9 risk issues: 5 High, 0 Medium, 2
Low and 2 Informational.
May 2007
Buffer overflow vulnerability in Roxio's CinePlayer
(High risk)
Roxio's CinePlayer contains a buffer overflow vulnerability, which if exploited, could permit malicious users to execute arbitrary code on affected machines
Read More
|
Critical Linux wifi flaw found
(High risk)
A critical Linux wifi flaw has been discovered that can enable attackers to gain remote control of a machine, even when it is not on a wifi network
Read More
|
Microsoft resumes Patch Tuesday
(High risk)
Microsoft has resumed Patch Tuesday, after having omitted the monthly bulletin in March. Six flaws have been fixed in the latest patch update, five of which are critical and one important
Read More
|
Yahoo! Messenger buffer overflow flaw
(High risk)
A highly critical buffer overflow vulnerability has been discovered in Yahoo! Messenger, which if successfully exploited, could result in system compromise
Read More
|
Oracle patches 37 vulnerabilities
(High risk)
Oracle has issued patches for 37 vulnerabilities in its database and e-business suite as well as JD Edwards and PeopleSoft products
Read More
|
Multiple Cisco wireless vulnerabilities patched
(Low risk)
Cisco has released a security bulletin addressing multiple vulnerabilities found in its Wireless Control System prior to version 4.0.96.0
Read More
|
Skype IM worm on the loose
(Low risk)
The Pykse-A worm is spreading through Skype IM sessions, masquerading as a link to an adult website
Read More
|
MP has keylogger installed by six year old
(Informational)
Guildford MP Anne Milton agreed to leave her computer unattended for 60 seconds as part of a test of House of Commons' IT security by the BBC's Inside Out programme. It took a six year old girl just 15 seconds to install a keylogger onto the PC
Read More
|
WEP encryption cracked in three seconds
(Informational)
It has been reported that 128-bit WEP encryption can now be cracked in just three seconds
Read More
|
About NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our
services page.