Apache HTTP server 2.2.15

Apache has released HTTP Server version 2.2.15, which addresses a number of security exposures in prior versions of the HTTP server. Of particular note is the updating of the OpenSSL library to 0.9.8m which addresses the renegotiation issues outlined in CVE-2009-3555. At the time of writing, the links to the complete [...]

Posted on March 9, 2010 at 3:14 PM by root · Permalink · Leave a comment
In: Security · Tagged with: , , ,

Vulnerabilities

Cisco disclosed multiple vulnerabilities in their Unified MeetingPlace product. These issues leave the product vulnerable to SQL injection attacks and could allow attackers to bypass authentication. Cisco has released patches to address these issues.
http://www.cisco.com/warp/public/707/cisco-sa-20100127-mp.shtml
http://secunia.com/advisories/38259/
The open source library YaSSL was found to have a security vulnerability related to the negotiation of SSL certificates. The possibility [...]

Posted on January 29, 2010 at 8:21 AM by root · Permalink · One Comment
In: Education, Security · Tagged with: , , , , , ,