BuyLow.com Computers And Internet - Internet Security, Computers, Mobile Devices, Networks


BuyLow.com | Resources | Contact Us


 

Alert: Apple iTunes

Apple Releases iTunes 8.2 and QuickTime 7.6.2
Apple has released iTunes 8.2 and QuickTime 7.6.2 to address multiple vulnerabilities. These vulnerabilities may allow an attacker to execute arbitrary code or cause a denial-of-service condition.
US-CERT encourages users to review Apple articles HT3592 and HT3591 and apply any necessary updates to help mitigate the risks.
Available for: Mac [...]

Read More About - Alert: Apple iTunes »

Mac OS X and Java Alert

Mac OS X Includes Known Vulnerable Version of Java
Current releases of Mac OS X (version 10.5.7 and version 10.4.11 with security update 2009-002) include a version of Java Runtime Environment (JRE) containing known security vulnerabilities. US-CERT is aware of publicly available exploit code for one of these vulnerabilities. This vulnerability may allow untrusted applets to [...]

Read More About - Mac OS X and Java Alert »

RSS BugTraq

  • Re: Re: IIS5.1 Directory Authentication Bypass by using ?:$I30:$Index_Allocation?
    Posted by steve . povolny on Sep 03There's not a lot in the way of information about IIS settings required to exploit this. What I've gleaned so far is IIS 5.1, and a request to a directory using the :$i30:$INDEX_ALLOCATION in the request...Can't seem to replicate this though. Are there any other settings that you are aware of for IIS? Basic a […]
  • VUPEN Security Research - Google Chrome Focus Processing Memory Corruption Vulnerability (VUPEN-SR-2010-249)
    Posted by VUPEN Security Research on Sep 03VUPEN Security Research - Google Chrome Focus Processing Memory Corruption Vulnerability (VUPEN-SR-2010-249) http://www.vupen.com/english/research.php I. BACKGROUND --------------------- "Google Chrome is a browser that combines a minimal design with sophisticated technology to make the web faster, safer, and e […]
  • [ MDVSA-2010:170 ] wget
    Posted by security on Sep 03 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:170 http://www.mandriva.com/security/ _______________________________________________________________________ Package : wget Date : September 2, 2010 Affected: 2008.0, 2009.0, 2009.1, 2010.0, 2010.1, Corporate 4.0, […]
  • [SECURITY] [DSA-2102-1] New barnowl packages fix arbitrary code execution
    Posted by Sebastien Delafond on Sep 03- ------------------------------------------------------------------------ Debian Security Advisory DSA-2102-1 security () debian org http://www.debian.org/security/ Sébastien Delafond Sep 3, 2010 http://www.debian.org/security/faq - ------------------------------------------------------------------------ Package : barn […]
  • nullcon Goa dwitiya (2.0) Call For Papers
    Posted by nullcon on Sep 03nullcon Dwitiya (2.0) The Jugaad(hacking) Conference nullcon is an initiative by null - The open security community. Website: http://nullcon.net Calling all Jugaadus(hackers) It's the time of the year when we welcome research done by the community as paper submissions for nullcon. So, sip your coffee, dust your debuggers, fire […]