Security Advisories

Remote Overflow in iPlanet Servers

August 9, 2002

Sun’s iPlanet Web Server, versions 6.0 and prior, has a buffer overrun vulnerability in its transfer chunking code. By issuing a malformed HTTP request, an attacker can crash the web server or possibly execute code under the service’s privileges. Sun has issued a patch, and integrated it into 4.1 SP11 and 6.0 SP4, available here. […]

MS Patches Holes in Content Management Server

August 8, 2002

Three security vulnerabilities in Microsoft’s Content Management Server 2001 have been announced and patched in security bulletin MS02-041. The most critical hole is an exploitable buffer overflow in user authentication that could give a remote attacker Administrative privileges. The other two problems are also serious: an SQL injection vulnerability, and bugs in the authoring function […]

Windows 2000 SP3 Available

August 1, 2002

Microsoft has released Service Pack 3 for Windows 2000, which contains a slew of bug fixes and updates, including a new Automatic Update system for future delivery of critical patches. A list of security fixes included in the SP indicates that nearly 100 holes have been fixed, many of which were not covered in bulletins […]

« Older Entries   Newer Entries »