Security Advisories

Multiple Vulnerabilities in OpenSSL

July 30, 2002

Update: CERT also has released advisory CA-2002-23 with vendor-specific patch links for major operating systems. The OpenSSL group has issued a security advisory for five vulnerabilities, including a remote overflow in the SSL2 client master key handling which has been proven to be exploitable. Versions 0.9.6.d and earlier, as well as 0.9.7-beta2 and earlier, are […]

CERT Issues MS SQL Server Advisory

July 30, 2002

CERT has issued advisory CA-2002-22 to cover the multiple vulnerabilities that have been recently discovered in Microsoft SQL Server 2000, including those we reported on last week. MS has issued eight (!) bulletins for over twelve security holes in the server since December 2001. This advisory goes over the most serious vulnerabilities, which can yield […]

MS Issues Four Security Patches, Critical SQL Flaw

July 25, 2002

Microsoft has released four security bulletins today: one “critical” SQL Server 2000 update and three others of “moderate” severity. MS02-036 – An authentication hole in Metadirectory Services 2.2 which could allow an unprivileged user to change MMS data or configuration. MS02-037 – Buffer overflow affecting Exchange Server 5.5, in the Internet Mail Connector’s handling of […]

« Older Entries   Newer Entries »