Skip to content

customize
Current Activity Calendar
Left Arrow
September 2008
Right Arrow
Su M Tu W Th F Sa
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30
Please click on a date above to see current activity for that day.

  • Latest Current Activity
  • September 29, 2008 - Current Activity

    This is an archived copy of current activity, if you would like to see the most recent version, please click here.

    September 29Mozilla Releases Firefox and Thunderbird Updates
    September 26Multiple Web Browsers Affected by Clickjacking
    September 26Adobe PDF Exploit Toolkits Circulating
    September 25Apple Releases Java Updates for Mac OS X 10.4 and 10.5
    September 25Veritas NetBackup Server/Enterprise Server Vulnerabilities
    September 24Cisco Releases Security Alerts
    September 24Mozilla Releases Firefox 3.0.2
    September 19VMware Releases Security Advisory VMSA-0008-0015
    September 18Adobe Releases Security Advisory for Mac Illustrator
    September 16Fake Antivirus Software Circulating



    Mozilla Releases Firefox and Thunderbird Updates

    added September 29, 2008 at 09:16 am

    Mozilla has released Firefox and Thunderbird v2.0.0.17 and Firefox v3.0.3 to address multiple vulnerabilities. These may allow an attacker to execute arbitrary code, obtain sensitive information, conduct cross-site scripting attacks, cause a denial-of-service condition, operate with escalated privileges, or conduct Clickjacking attacks. Note that Firefox v3.0.2 was initially released to address these vulnerabilities. Version 3.0.3 was released to correct a flaw that was unrelated to the vulnerabilities.

    US-CERT encourages users and administrators to do the following to help mitigate the risks:


    Multiple Web Browsers Affected by Clickjacking

    added September 26, 2008 at 03:28 pm

    US-CERT is aware of public reports of a new cross-browser exploit technique called "Clickjacking." According to one of the reports, Clickjacking gives an attacker the ability to trick a user into clicking on something only barely or momentarily noticeable. Therefore, if a user clicks on a web page, they may actually be clicking on content from another page. A separate report indicates that this flaw affects most web browsers and that no fix is available, but that disabling browser scripting and plug-ins may help mitigate some of the risks.

    An additional report suggests that Firefox users consider using the NoScript plug-in as an added preventative measure. Disabling IFRAMEs by default, as outlined in the Securing Your Web Browser document, is reported to protect against the vulnerability.

    US-CERT encourages users to review the report and follow the security recommendations as described in the Securing Your Web Browser document to help mitigate some of the risks.

    US-CERT will provide additional information as it becomes available.


    Adobe PDF Exploit Toolkits Circulating

    added September 25, 2008 at 11:27 am | updated September 26, 2008 at 10:55 am

    US-CERT is aware of public reports of improved attack toolkits for exploiting vulnerabilities in PDF reader software.

    Another report offering additional information is publicly available.

    US-CERT encourages users to do the following to help mitigate the risks:

    • Do not open untrusted files or files of unknown origin.
    • Install antivirus software, and keep its virus signature files up to date.
    • Regularly apply software patches and updates as supplied by the vendor.


    Apple Releases Java Updates for Mac OS X 10.4 and 10.5

    added September 25, 2008 at 08:22 am

    Apple has released updates for Java for Mac OS X 10.4 and 10.5 to address multiple vulnerabilities. These vulnerabilities may allow an attacker to execute arbitrary code.

    US-CERT encourages users to review Apple Article HT3178 and HT3179 and apply any necessary updates to help mitigate the risks.


    Veritas NetBackup Server/Enterprise Server Vulnerabilities

    added September 25, 2008 at 08:13 am

    Symantec has released a Security Advisory to address multiple vulnerabilities in the Veritas NetBackup Server/Enterprise Server. These vulnerabilities are due to stack-based buffer overflow conditions and unsafe method calls within an ActiveX control that is part of the scheduler component. Exploitation of this vulnerability may allow a remote attacker to execute arbitrary code.

    US-CERT encourages users to review the Symantec Security Advisory and apply any necessary updates to help mitigate the risks.


    Cisco Releases Security Alerts

    added September 24, 2008 at 02:42 pm

    Cisco has released multiple security alerts to address vulnerabilities in the Unified Communications Manager and IOS. These vulnerabilities may allow a remote unauthenticated attacker to cause a denial-of-service condition, obtain sensitive information, or operate with escalated privileges.

    US-CERT encourages users and administrators to review the following Cisco Alerts and apply any necessary updates to help mitigate the risks.


    Mozilla Releases Firefox 3.0.2

    added September 24, 2008 at 09:32 am

    Mozilla has released Firefox 3.0.2 to address multiple vulnerabilities. The impacts of these vulnerabilities include arbitrary code execution, enabling cross-site scripting, privilege escalation, information disclosure, and denial of service. As described in the Mozilla Foundation Security Advisories, some of these vulnerabilities may also affect Thunderbird and SeaMonkey.

    US-CERT encourages users to do the following to help mitigate the risks:


    VMware Releases Security Advisory VMSA-0008-0015

    added September 19, 2008 at 09:51 am

    VMware has released a Security Advisory indicating it has updated the ESXi and ESX 3.5 packages to address a vulnerability in "openwsman". This vulnerability is due to several buffer overflow conditions in the handling of HTTP basic authentication headers. Exploitation of this vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code on the host running ESXi or ESX.

    US-CERT encourages users and administrators to review VMware Security Advisory VMSA-0008-0015 and apply any necessary updates to help mitigate the risks.


    Adobe Releases Security Advisory for Mac Illustrator

    added September 18, 2008 at 08:56 am

    Adobe has released a Security Advisory to alert users of potential vulnerabilities affecting the Macintosh version of Illustrator CS2. By convincing a user to open a malicious Adobe Illustrator file, an attacker may be able to execute arbitrary code.

    In the advisory, Adobe recommends that users exercise caution when receiving unsolicited or suspicious files. Adobe also states that they are currently unaware of any public exploitation of these vulnerabilities.

    US-CERT will provide more information as it becomes available.


    Fake Antivirus Software Circulating

    added September 16, 2008 at 12:30 pm

    US-CERT is aware of public reports indicating an increase in the instances of fake antivirus software circulating. These software applications are malicious code, not legitimate antivirus applications. These instances of malicious code are noted as being distributed through spam email messages containing malicious links, instant messages containing malicious links, private messages on social networking sites, infection from other malware, and from visiting compromised websites.

    Quite often, this malware attempts to convince users that there is something wrong with their systems. This leads to an attempt persuade the users into purchasing an illegitimate antivirus application. If the user purchases the bogus software, the attacker may be able to obtain personal and credit card information for use in additional scams and fraudulent activity.

    US-CERT encourages users to perform the following preventative measures to help mitigate the risks:

    • Install legitimate antivirus software from a trusted vendor, and keep its virus signature files up-to-date.
    • Do not follow unsolicited web links found in email messages or instant messages.
    • Use caution when visiting untrusted websites.
    • Do not install untrusted software.