Skip to content

customize
Current Activity Calendar
Left Arrow
August 2008
Right Arrow
Su M Tu W Th F Sa
          1 2
3 4 5 6 7 8 9
10 11 12 13 14 15 16
17 18 19 20 21 22 23
24 25 26 27 28 29 30
31
Please click on a date above to see current activity for that day.

  • Latest Current Activity
  • August 14, 2008 - Current Activity

    This is an archived copy of current activity, if you would like to see the most recent version, please click here.

    August 14Joomla! Password Reset Vulnerability
    August 13Apple MobileMe Phishing Scam
    August 12Microsoft Releases August Security Bulletin
    August 11Webex Meeting Manager ActiveX Control Vulnerability
    August 7Microsoft Releases Advanced Notification for August Security Bulletin
    August 7Malware Circulating via Spam Messages
    August 6Oracle Releases Patch for WebLogic Plug-in Vulnerability
    August 5Malware Targeting Adobe Flash Player
    August 4CA ARCserve Backup for Laptops and Desktops Server vulnerability
    August 4Internet System Consortium releases BIND -P2 patches



    Joomla! Password Reset Vulnerability

    added August 14, 2008 at 01:20 pm

    The Joomla! Project has released an advisory to address a password reset vulnerability in the Joomla! content management system. This vulnerability, which may allow non-validating tokens to be forged, is due to a flaw in the reset token validation mechanism. Exploitation of this vulnerability may allow an unauthenticated attacker to reset the password of the first enabled user, which is typically an administrator user.

    US-CERT encourages users to review the Joomla! advisory and upgrade to version 1.5.6 (or newer) or apply the patch listed in the advisory.


    Apple MobileMe Phishing Scam

    added August 13, 2008 at 10:18 am

    US-CERT is aware of public reports of a phishing attack circulating via email messages that appear to be targeting Apple MobileMe users. These messages claim that there is a problem with the user's billing information and instruct the user to follow a web link to update personal information. Clicking on this link directs the user to a web page that contains a seemingly legetimate web form requesting personal and financial information. Any information entered in this form is not sent to Apple but rather, to a malicious attacker.

    US-CERT encourages users to do the following to help mitigate the risks:


    Microsoft Releases August Security Bulletin

    added August 12, 2008 at 02:24 pm

    Microsoft has released updates to address vulnerabilities in Microsoft Windows, Office, Internet Explorer, Outlook Express, Windows Mail, and Windows Messenger as part of the Microsoft Security Bulletin Summary for August 2008. These vulnerabilities may allow an attacker to execute arbitrary code or obtain sensitive information.

    US-CERT encourages users to review the bulletins and follow best-practice security policies to determine which updates should be applied.


    Webex Meeting Manager ActiveX Control Vulnerability

    added August 11, 2008 at 12:41 pm

    US-CERT is aware of public reports of a vulnerability that affects Webex Meeting Manager. This vulnerability is due to improper handling of arguments passed to the "NewObject()" method within the WebexUCFObject ActiveX control (atucfobj.dll). By convincing a user to visit a specially crafted web page, a remote attacker may be able to execute arbitrary code.

    Public reports indicate that Webex has addressed this issue in Meeting Manager version 20.2008.2606.4919. US-CERT encourages users to upgrade to this version or set the kill bit for CLSID 32E26FD9-F435-4A20-A561-35D4B987CFDC. Information about how to set a kill bit can be found in Microsoft Support Article 240797.


    Microsoft Releases Advanced Notification for August Security Bulletin

    added August 7, 2008 at 04:27 pm

    Microsoft has issued a Security Bulletin Advance Notification indicating that the August release cycle will contain 12 bulletins, seven of which will have a severity rating of Critical. The notification states that these Critical bulletins are for Microsoft Windows, Office, and Internet Explorer. There will also be five important bulletins for Microsoft Windows, Office, Outlook Express, Windows Mail, and Windows Messenger. Release of these bulletins is scheduled for Tuesday, August 12.

    US-CERT will provide additional information as it becomes available.


    Malware Circulating via Spam Messages

    added August 7, 2008 at 12:06 pm

    US-CERT is aware of public reports of malware spreading via spam. It has been reported that malware is spreading in spam messages related to the upcoming Olympics and to fake CNN news reports. If a user clicks the link to one of these fake news reports they are prompted to install a Flash Player update. If users attempt to install the update, malware may be downloaded and installed onto their system.

    US-CERT encourages users and administrators to take the following preventative measures to help mitigate the security risks:


    Oracle Releases Patch for WebLogic Plug-in Vulnerability

    added August 6, 2008 at 01:09 pm

    Oracle has released a patch to address a previously disclosed vulnerability in the WebLogic plug-in for Apache. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code or cause a denial-of-service condition.

    US-CERT encourages users to consider applying the patch and workarounds referenced in the Oracle Security Advisory and in Vulnerability Note VU#716387.


    Malware Targeting Adobe Flash Player

    added August 5, 2008 at 12:43 pm

    Adobe has issued a Security Bulletin warning of malware spreading via a fraudulent Flash Player installer. Adobe warns that a worm is making fraudulent posts on social networking sites. These posts include links that lead to fake sites that prompt users to update their versions of Flash Player. If users attempt to use the installer to make the update, malware may be downloaded and installed onto their systems.

    US-CERT urges users and administrators to take the following preventative measures to help mitigate the security risks:


    CA ARCserve Backup for Laptops and Desktops Server vulnerability

    added August 4, 2008 at 11:35 am

    US-CERT is aware of a vulnerability that affects CA ARCserve Backup for Laptops and Desktops. This vulnerability may allow an attacker to execute arbitrary code or cause a denial-of-service condition on the server.

    More information regarding this vulnerability can be found in the CA Security Advisory "Security Notice for CA ARCserve Backup for Laptops and Desktops Server LGServer" document.

    US-CERT recommends that users upgrade to the latest versions to help mitigate the security risks.


    Internet System Consortium releases BIND -P2 patches

    added August 4, 2008 at 11:35 am

    The Internet System Consortium has released updates for BIND to address performance and stability issues.

    US-CERT recommends that administrators of this product apply the respective patches for BIND 9.5.0-P2, BIND 9.4.2-P2 and BIND 9.3.5-P2 or check with their software vendor for updated versions.