Pavlov Scope

2006 February 10

Lotus Notes Security issues

Filed under: ITSec — Kev Frey @ 15:15:28

Lotus Notes has recently had some security issues disclosed in a variety of areas. One of them is a stack overflow bug that can allow arbitrary code execution (people can run a program on your computer without you having to click on it) – one of the worst kinds of bugs. Other vulns exist that have the same effect. These kinds of programming errors often create new “vectors” of attack for spyware, spammers, and viruses to exploit. The above are clients bugs.

There are also some server DoS-type bugs and other “unspecified” vulns as well, but all of the bugs are fixed by upgrading to 6.5.5 or 7.0.1 – so if you are running Notes or Domino, upgrade and be happy again.

_____________________________________________________________
KevFrey

kevfrey@gmail.com
.     .    .   .  . .. .  .   .    .     .

Technorati:
del.icio.us:

2006 February 2

WinAmp Security Flaw found / Fixed

Filed under: ITSec, Music — Kev Frey @ 18:24:28

I am an avid user of WinAmp, as are millions of other people. But, one thing I don’t make a habit of is downloading other people’s playlists, mainly because I have too many of my own to handle. However, if you have WinAmp installed on your machine (even if you are not an avid user or don’t DL playlists) watch out for a new nasty bug in versions of WinAmp 5.12 and prior. This buffer overflow vulnerability allows maliciosly coded playlists to run other programs on your machine (known as arbitrary execution) without your control. A good example might be a link to a playlist on a malicious website disguised to be a normal webpage link.

An exploit is out in the wild for this bug, making it exceedingly easy to exploit and some spyware is already using this flaw to install itself. Lately, spyware installers have been on the leading edge of exploits (over virus writers) – probably because there is money in spyware and not so much in viruses.

Since WinAmp automatically associates playlist files (naturally) to itself, you could accidentally trigger a malicious file without realizing it.

Bottom line – If you have WinAmp installed, update ASAP to 5.13 or higher: Here is a link to the WinAmp DL page

Questions or comments, please let me know.

_____________________________________________________________
KevFrey

kevfrey@gmail.com
.     .    .   .  . .. .  .   .    .     .

Firefox 1.5.0.1 released

Filed under: ITSec — Kev Frey @ 15:50:28

Yesterday, Firefox released an update to bring the version up to 1.5.0.1. Some of you avid users were probably prompted already to upgrade. I suggest doing the upgrade to introduce additional stability and to install the security fixes that have been implemented in this release. Also included is improved Mac support for all you applesaucers out there…

There is an active exploit running around now that takes advantage of a security flaw in the older version, so please update if you haven’t already.

If you aren’t prompted to upgrade automatically, then you can do so manually by choosing Help-Check for Updates from the menu.

Here is a link to the geeky list of specifics.

Additionally, if you have installed some of the great Firefox extensions, you will need to update them as well.

Choose Tools-Extensions, then the Find Updates button on the bottom left of the resulting dialog box. After they are all downloaded, you will need to restart Firefox, but then you will be all up-to-date.

_____________________________________________________________
KevFrey

kevfrey@gmail.com
.     .    .   .  . .. .  .   .    .     .

« Previous Page