Current Activity Calendar
| June 13, 2007 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.Microsoft Releases June Security Bulletinsadded June 12, 2007 at 01:18 pm | updated June 13, 2007 at 08:36 am
Microsoft has released updates to address vulnerabilities in Windows, Internet Explorer, Outlook Express, Windows Mail, Visio, and the Windows Schannel Security Package as part of the Microsoft Security Bulletin Summary for June 2007. Publicly Available Exploit for Yahoo! Messenger IM Client ActiveX Control Vulnerabilitiesadded June 8, 2007 at 11:40 am | updated June 8, 2007 at 12:57 pm
US-CERT is aware of publicly available exploit code for vulnerabilities in the Yahoo! Messenger Webcam Upload (ywcupl.dll) and Webcam Viewer (ywcvwr.dll) ActiveX controls that may allow an attacker to execute arbitrary code on a user's machine.
Microsoft Releases Advance Notification for June Security Bulletinsadded June 7, 2007 at 03:23 pmMicrosoft has issued a Security Bulletin Advance Notification indicating that their June release cycle will contain six bulletins, four of which have a maximum severity rating of Critical. The notification further states that the four Critical bulletins are for Windows, Internet Explorer, and Outlook Express. There will also be two non-critical bulletins for Visio and Windows as well as an updated version of the Microsoft Windows Malicious Software Removal Tool. The release is scheduled for Tuesday, June 12, 2007. US-CERT will provide additional information as it becomes available. Computer Associates Release Security Notice for Anti-Virus Engineadded June 7, 2007 at 03:20 pmThe Computer Associates Anti-Virus engine fails to properly process CAB archives. These vulnerabilities may allow an unauthenticated attacker to execute arbitrary code or cause a denial-of-service condition.
Sun Microsystems Releases Security Advisory for Java Runtime Environment Image Parsing Codeadded June 6, 2007 at 09:02 am | updated June 6, 2007 at 01:20 pmSun Microsystems released a Security Advisory for the Java Runtime Environment Image Parsing Code. This vulnerability may allow an applet to read and write local files or execute local applications. More information can be found in Vulnerability Note VU#138545 Microsoft Windows GDI+ ICO Vulnerabilityadded June 6, 2007 at 11:56 am | updated June 6, 2007 at 01:18 pmMicrosoft Windows Graphics Device Interface is vulnerable to an integer division-by-zero error. This vulnerability may lead to a denial-of-service condition due to the introduction of a specially crafted icon file. It may be possible for a malformed icon file to be embedded in an executable or other file. More information can be found in the following: PHP Vulnerabiltyadded June 5, 2007 at 03:33 pm | updated June 6, 2007 at 11:07 amUS-CERT is aware of a publicly reported vulnerability in PHP. PHP version 5.2.3 may be vulnerable to an integer overflow within the chunk_split() function. More information can be found in the following PHP Security Blog. US-CERT will provide additional information as it becomes available. |
|||||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting
DHS Threat Advisory
The threat level in the airline sector is High or Orange. Read more

Mailing Lists & Feeds
