Sunday, July 02, 2006

Security Updates

iTunes 6.0.4

The AAC file parsing code in iTunes versions prior to 6.0.5 contains an integer overflow vulnerability. Parsing a maliciously-crafted AAC file could cause iTunes to terminate or potentially execute arbitrary code. iTunes 6.0.5 addresses this issue by improving the validation checks used when loading AAC files.

iTunes 6.0.5 is freely available from APPLE.

OpenOffice Security Bulletin

OpenOffice.org 2.0.3 fixes three security vulnerabilites that have been found through internal security audits. Although there are currently no known exploits, we urge all users of 2.0.x prior to 2.0.2 to upgrade to the new version or install their vendor's patches accordingly. Patches for users of OpenOffice.org 1.1.5 will be available shortly.

Read the official bulletin HERE.

Test your browser for new vulnerability

Plebo Aesdi Nael has discovered two vulnerabilities in Internet Explorer, which can be exploited by malicious people to disclose potentially sensitive information and potentially compromise a user's system.

Read the advisory HERE.
Or just test your browser for new vulnerability HERE.

0 Comments:

Post a Comment

<< Home