Current Activity Calendar
| October 27, 2008 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.Microsoft Releases Security Advisory 958963added October 27, 2008 at 08:16 pm
Microsoft has released Security Advisory 958963 to alert users that exploit code is publicly available for the Windows Server Service vulnerability addressed in Microsoft Security Bulletin MS08-067. The advisory states that this exploit code has demonstrated arbitrary code execution on Windows 2000, XP and Server 2003.
Microsoft Releases Out-of-Band Security Bulletin MS08-067added October 23, 2008 at 01:08 pm | updated October 27, 2008 at 09:44 am
Update: The Microsoft Security Response Center (MSRC) has posted a blog entry to provide additional information regarding the status of this vulnerability and the state of security update deployments. Users and administrators are encouraged to review the blog entry as it provides information about known malicious code targeting this vulnerability. Cisco Releases Advisory for Cisco PIX and ASAadded October 23, 2008 at 07:59 am
Cisco Security Advisory cisco-sa-20081022-asa was released to address multiple vulnerabilities in Cisco ASA and PIX. These vulnerabilities may allow an attacker to bypass authentication mechanisms or cause a denial-of-service condition. Microsoft Releases Advance Notification for Out-of-Band October Security Bulletinadded October 23, 2008 at 07:47 am
Microsoft has issued a Security Bulletin Advance Notification indicating the upcoming release of an out-of-band bulletin. The notification states that this is a Critical bulletin and is for Microsoft Windows. Release of this bulletin is scheduled for Thursday, October 23. Trend Micro OfficeScan Critical Patch Releaseadded October 22, 2008 at 09:05 am
Trend Micro has released a Critical Patch to address a vulnerability in OfficeScan. This vulnerability is due to a stack-based buffer overflow condition. By sending a specially crafted HTTP request containing form data to the server CGI module, an attacker may be able to execute arbitrary code on the affected system. F-Secure Releases Security Bulletin FSC-2008-3added October 21, 2008 at 02:11 pm
F-Secure has released a Security Bulletin to address a vulnerability that affects a number of their products. This vulnerability is due to improper RPM parsing. Exploitation of this vulnerability may allow an attacker to execute arbitrary code. Adobe Releases Security Bulletin for Flash Playeradded October 16, 2008 at 12:38 pm
Adobe has released a Security Bulletin to address multiple security issues in Flash Player. Some of these issues may allow an attacker to conduct clickjacking types of attacks that could enable the camera or microphone through Flash Player. Additional information about clickjacking attacks can be found in a recently posted Current Activity entry. Oracle Releases Critical Patch Update for October 2008added October 15, 2008 at 09:14 am
Oracle has released their Critical Patch Update for October 2008 to address 36 vulnerabilities across several products. This update contains the following security fixes:
Microsoft Updates Security Advisory 951306added October 14, 2008 at 01:53 pm
In April 2008, Microsoft released Security Advisory 951306 to alert users of a vulnerability in Microsoft Windows. This vulnerability may allow local users, or users who can legitimately run code in the context of IIS or SQL Server, to operate with elevated privileges. Recently, Microsoft Security Response Center (MSRC) posted several blog entries indicating that the Security Advisory was updated to reflect the availability of public exploit code. A patch or update is not available to correct this issue.
Microsoft Releases October Security Bulletinadded October 14, 2008 at 01:39 pm
Microsoft has released updates to address vulnerabilities in Microsoft Windows, Internet Explorer, Host Integration Server, and Office as part of the Microsoft Security Bulletin Summary for October 2008. These vulnerabilities may allow an attacker to execute arbitrary code, obtain sensitive information or operate with elevated privileges. |
||||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting
DHS Threat Advisory
The threat level in the airline sector is High or Orange. Read more

Mailing Lists & Feeds
