Security Advisories

MS alerts for a new MDAC vulnerability

August 24, 2003

Microsoft has released a security bulletin (MS03-033) to alert its customers about a new vulnerability in Microsoft Data Access Components. According to Microsoft, a vulnerability was found on the implementation of SQL-DMO library that allows a malicious SQL server to cause a buffer overflow in the client’s application. If you have any application that uses […]

New version of Apache fixes security holes

July 20, 2003

Version 2.0.47 of Apache has been released and is principally a security and bug fix release. Of particular note is that 2.0.47 addresses four security vulnerabilities: Certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one could result in the weak ciphersuite being used […]

Continuous attacks against IIS 5.0

July 14, 2003

1) Description: A buffer overflow in a ntdll.dll function can be exploited through the WEBDAV service of IIS 5.0.This vulnerability is currently been widely exploited in the Internet. 2) Impact: Arbitrary execution of commands remotely in the operational system. 3) Fixes: If it is possible, disable the WebDAV service by setting the registry key below […]

« Older Entries   Newer Entries »