Security Advisories

Windows XP Service Pack 1 Released

September 2, 2002

The final release of Windows XP Service Pack 1 is now available for download by the general public. SP1 is a cumulative update containing all previously released security and bug fixes, as well as patches for new issues. In accordance with an anti-trust agreement between Microsoft and the Department of Justice, it also includes tools […]

OpenSSH Advisory, Patch Released

August 28, 2002

Details and a patch have been issued a day earlier than expected for the OpenSSH security hole uncovered late last week. A vulnerability in the challenge/response authentication mechanism of the OpenSSH daemon, versions 3.3 and earlier, could allow remote superuser compromise. ISS’s advisory has more details (they actually gave the developers a few days before […]

Directory Traversal Bug in Non-Unix Apache

August 16, 2002

PivX has released details on the critical Apache security hole for which they gave a vague early warning last week. The web server is vulnerable to a directory traversal attack which can be used to execute arbitrary commands on a system using the cgi-bin. In addition, any file on the system could be read. PivX […]

« Older Entries   Newer Entries »