<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Information Armor &#187; Vulnerabilities</title>
	<atom:link href="http://www.informationarmor.com/tag/vulnerabilities/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.informationarmor.com</link>
	<description>Protecting Your Data. A public service from Arizona IT Management LLC</description>
	<lastBuildDate>Tue, 22 Jun 2010 16:27:09 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Patch Tuesday for Microsoft</title>
		<link>http://www.informationarmor.com/2010/06/07/patch-tuesday-for-microsoft/</link>
		<comments>http://www.informationarmor.com/2010/06/07/patch-tuesday-for-microsoft/#comments</comments>
		<pubDate>Mon, 07 Jun 2010 15:36:44 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/?p=105</guid>
		<description><![CDATA[Microsoft&#8217;s June Security Advance Notification Microsoft is planning to release ten bulletins addressing 34 vulnerabilities on Tuesday, June 8th. The bulletins are rated as follows: 3 &#8220;Critical&#8221; and 7 &#8220;Important&#8221;. The affected software includes: Windows, Microsoft Office, and Internet Explorer. Additionally, Microsoft plans to address the issues highlighted in Security Advisories 983438 and 980088. We [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Microsoft&#8217;s June Security Advance Notification </strong><br />
Microsoft is planning to release ten bulletins addressing 34 vulnerabilities on Tuesday, June 8th. The bulletins are rated as follows: 3 &#8220;Critical&#8221; and 7 &#8220;Important&#8221;. The affected software includes: Windows, Microsoft Office, and Internet Explorer. Additionally, Microsoft plans to address the issues highlighted in Security Advisories 983438 and 980088. We encourage our customers to review the vendor&#8217;s Advance Notification and associated blog post.<br />
<a href="http://www.microsoft.com/technet/security/bulletin/ms10-jun.mspx " target="_blank">http://www.microsoft.com/technet/security/bulletin/ms10-jun.mspx </a><br />
<a href="http://blogs.technet.com/b/msrc/archive/2010/06/03/june-2010-security-bulletin-advance-notification.aspx " target="_blank">http://blogs.technet.com/b/msrc/archive/2010/06/03/june-2010-security-bulletin-advance-notification.aspx </a></p>
<p><strong>Mobile Malware </strong><br />
Reports have surfaced this week indicating that Samsung&#8217;s S8500 Wave handsets were shipped with a malware-infected microSD card. Reportedly, some German models of this device are affected. Once the device is connected to the computer, it automatically installs a Trojan using a file called &#8220;slmvsrv.exe.&#8221;</p>
<p>While this is an example of a mobile device being shipped with malware, there are ways that attackers can utilize different functionality to distribute their malware. For instance, the Multimedia Message Service (MMS) can be used as a vector for sending malware to unsuspecting victims. Many mobile phones and PDAs available today are capable of communicating via Bluetooth, a protocol designed for short range communication between electronic devices. Simple social engineering attacks have effectively convinced Bluetooth users to pair their devices with complete strangers, giving them unrestricted access to data on the victim&#8217;s phone. Additionally, many modern mobile phones and PDAs now run robust, feature-rich operating systems and offer the same or similar applications as PCs. Individuals increasingly use them to store personal data and conduct financial transactions which gives attackers more incentive to find and exploit vulnerabilities in the software.</p>
<p>Several major security vendors now provide security applications and anti-virus software for mobile users. Cellular service providers also offer some protection to their customers automatically by scanning for specific types of malicious code as data traverses the network. Bluetooth should be disabled while not in use and should never respond to unsolicited connection attempts. Although the level of mobile attacks is currently relatively low, it is still important for organizations to be aware of the potential threat.<br />
<a href="http://www.engadget.com/2010/06/02/samsung-wave-shipping-with-infected-microsd-card/ " target="_blank">http://www.engadget.com/2010/06/02/samsung-wave-shipping-with-infected-microsd-card/ </a><br />
<a href="http://www.f-secure.com/weblog/archives/00001959.html " target="_blank">http://www.f-secure.com/weblog/archives/00001959.html </a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/06/07/patch-tuesday-for-microsoft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Internet Explorer Vulnerability</title>
		<link>http://www.informationarmor.com/2010/04/07/microsoft-internet-explorer-vulnerability/</link>
		<comments>http://www.informationarmor.com/2010/04/07/microsoft-internet-explorer-vulnerability/#comments</comments>
		<pubDate>Wed, 07 Apr 2010 15:50:19 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/?p=98</guid>
		<description><![CDATA[New Exploit Code for Microsoft Internet Explorer Vulnerability Exploit code has surfaced for one of the vulnerabilities in MS10-018, the out-of-cycle bulletin released by Microsoft on March 30. This bulletin addresses multiple vulnerabilities in Internet Explorer including a 0-day vulnerability that was being exploited earlier this month. This most recent exploit code which has been [...]]]></description>
			<content:encoded><![CDATA[<p><strong>New Exploit Code for Microsoft Internet Explorer Vulnerability</strong><br />
Exploit code has surfaced for one of the vulnerabilities in MS10-018, the out-of-cycle bulletin released by Microsoft on March 30. This bulletin addresses multiple vulnerabilities in Internet Explorer including a 0-day vulnerability that was being exploited earlier this month. This most recent exploit code which has been released targets a different vulnerability covered by this same update. Customers that have not done so already should apply this cumulative update.<br />
<a href="http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx">http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx</a></p>
<p><a href="http://www.metasploit.com/redmine/projects/framework/repository/revisions/9018/entry/modules/exploits/windows/browser/ms10_018_ie_tabular_activex.rb">http://www.metasploit.com/redmine/projects/framework/repository/revisions/9018/entry/modules/exploits/windows/browser/ms10_018_ie_tabular_activex.rb</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/04/07/microsoft-internet-explorer-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft</title>
		<link>http://www.informationarmor.com/2010/03/09/microsoft/</link>
		<comments>http://www.informationarmor.com/2010/03/09/microsoft/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 22:16:26 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Education]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[update]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/?p=95</guid>
		<description><![CDATA[As a reminder, Microsoft is planning to release two security bulletins today, March 9, 2010. Both bulletins carry a maximum severity rating of important and the issues addressed could lead to remote code execution. The first bulletin applies to various versions of Windows XP, Vista and Windows 7 and is rated as important for all [...]]]></description>
			<content:encoded><![CDATA[<p>As a reminder, Microsoft is planning to release two security bulletins today,  March 9, 2010. Both bulletins carry a <strong>maximum severity rating of importan</strong>t and  the issues addressed could lead to remote code execution. The first bulletin  applies to various versions of Windows XP, Vista and Windows 7 and is rated as  important for all affected versions. The second bulletin applies to various  Office releases and components for Windows and Mac and is also rated as  important for all affected versions.<br />
<a title="http://www.microsoft.com/technet/security/bulletin/ms10-mar.mspx" href="http://www.microsoft.com/technet/security/bulletin/ms10-mar.mspx">http://www.microsoft.com/technet/security/bulletin/ms10-mar.mspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/03/09/microsoft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apache HTTP server 2.2.15</title>
		<link>http://www.informationarmor.com/2010/03/09/apache-http-server-2-2-15/</link>
		<comments>http://www.informationarmor.com/2010/03/09/apache-http-server-2-2-15/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 22:14:19 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[apache]]></category>
		<category><![CDATA[http]]></category>
		<category><![CDATA[openssl]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/?p=90</guid>
		<description><![CDATA[Apache has released HTTP Server version 2.2.15, which addresses a number of security exposures in prior versions of the HTTP server. Of particular note is the updating of the OpenSSL library to 0.9.8m which addresses the renegotiation issues outlined in CVE-2009-3555. At the time of writing, the links to the complete changelog and downloads for [...]]]></description>
			<content:encoded><![CDATA[<p>Apache has released HTTP Server version 2.2.15, which addresses a number of  security exposures in prior versions of the HTTP server. Of particular note is  the updating of the OpenSSL library to 0.9.8m which addresses the renegotiation  issues outlined in CVE-2009-3555. At the time of writing, the links to the  complete changelog and downloads for 2.2.15 were not visible on the Apache Web  site, however, we urge users to apply this latest vendor update as soon as  possible.<br />
<a title="http://mail-archives.apache.org/mod_mbox/www-announce/201003.mbox/&lt;4B92BC77.8050401@apache.org&gt;" href="http://mail-archives.apache.org/mod_mbox/www-announce/201003.mbox/%3C4B92BC77.8050401@apache.org%3E">http://mail-archives.apache.org/mod_mbox/www-announce/201003.mbox/%3C4B92BC77.8050401@apache.org%3E</a><br />
<a title="http://httpd.apache.org/download.cgi" href="http://httpd.apache.org/download.cgi">http://httpd.apache.org/download.cgi</a></p>
<p>Proof of concept code exploiting a vulnerability (CVE-2010-0425) in the Apache  HTTP server version 2.2.14, mod_isapi, was published to a well known Web site.  Notes in the code state that the exploit may need to be run several times to  achieve successful spawning of a shell however &#8211; a success rate of 70% is  reported. Also mentioned in the code is that, if DEP is enabled (Windows  platforms) for the Apache process, the result may be a denial of service  condition. As CVE-2010-0425 is one of those noted as addressed in the above  2.2.15 release, we again suggest updating as soon as possible.<br />
<a title="http://www.exploit-db.com/exploits/11650" href="http://www.exploit-db.com/exploits/11650">http://www.exploit-db.com/exploits/11650</a><br />
<a title="http://securityreason.com/wlb_show/WLB-2010030028" href="http://securityreason.com/wlb_show/WLB-2010030028">http://securityreason.com/wlb_show/WLB-2010030028</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/03/09/apache-http-server-2-2-15/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft MS10-015 BSOD Issue</title>
		<link>http://www.informationarmor.com/2010/02/16/microsoft-ms10-015-bsod-issue/</link>
		<comments>http://www.informationarmor.com/2010/02/16/microsoft-ms10-015-bsod-issue/#comments</comments>
		<pubDate>Tue, 16 Feb 2010 16:19:28 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Education]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[bsod]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[update]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/?p=78</guid>
		<description><![CDATA[Microsoft has acknowledged that there is an issue when applying the update related to advisory MS10-015 on systems that are infected with certain malware strains including one called &#8220;Tidserv&#8221;. These infected systems have a high likelihood of becoming unbootable displaying a PAGE_FAULT &#8220;Blue Screen of Death&#8221; (BSOD) error. Microsoft has issued directions on how to [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has acknowledged  that there is an issue when applying the update related to advisory MS10-015 on  systems that are infected with certain malware strains including one called  &#8220;Tidserv&#8221;. These infected systems have a high likelihood of becoming unbootable  displaying a PAGE_FAULT &#8220;Blue Screen of Death&#8221; (BSOD) error. Microsoft has  issued directions on how to resolve this issue and has temporarily removed this  update from the Windows Update Service until a complete investigation can be  done.<br />
<a title="http://www.symantec.com/connect/blogs/tidserv-and-ms10-015" href="http://www.symantec.com/connect/blogs/tidserv-and-ms10-015">http://www.symantec.com/connect/blogs/tidserv-and-ms10-015</a><br />
<a title="http://social.answers.microsoft.com/Forums/en-US/vistawu/thread/73cea559-ebbd-4274-96bc-e292b69f2fd1" href="http://social.answers.microsoft.com/Forums/en-US/vistawu/thread/73cea559-ebbd-4274-96bc-e292b69f2fd1">http://social.answers.microsoft.com/Forums/en-US/vistawu/thread/73cea559-ebbd-4274-96bc-e292b69f2fd1</a><br />
<a title="http://blogs.zdnet.com/microsoft/?p=5250" href="http://blogs.zdnet.com/microsoft/?p=5250">http://blogs.zdnet.com/microsoft/?p=5250</a><br />
<a title="http://blogs.technet.com/msrc/archive/2010/02/12/update-restart-issues-after-installing-ms10-015.aspx" href="http://blogs.technet.com/msrc/archive/2010/02/12/update-restart-issues-after-installing-ms10-015.aspx">http://blogs.technet.com/msrc/archive/2010/02/12/update-restart-issues-after-installing-ms10-015.aspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/02/16/microsoft-ms10-015-bsod-issue/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MS10-002</title>
		<link>http://www.informationarmor.com/2010/01/22/ms10-002/</link>
		<comments>http://www.informationarmor.com/2010/01/22/ms10-002/#comments</comments>
		<pubDate>Fri, 22 Jan 2010 15:38:00 +0000</pubDate>
		<dc:creator>root</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.informationarmor.com/2010/01/22/ms10-002/</guid>
		<description><![CDATA[Microsoft has released MS10-002 today. The update addresses 7 privately reported and 1 publicly reported vulnerability which is associated with the widely publicized attacks associated with Security Advisory 979352. There are four (4) Uninitialized Memory Corruption Vulnerabilities, two (2) HTML Object Memory Corruption Vulnerabilities, one (1) XSS Filter Script Handling Vulnerability, and one (1) URL [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released MS10-002 today. The update addresses 7 privately reported and 1 publicly reported vulnerability which is associated with the widely publicized attacks associated with Security Advisory 979352. There are four (4) Uninitialized Memory Corruption Vulnerabilities, two (2) HTML Object Memory Corruption Vulnerabilities, one (1) XSS Filter Script Handling Vulnerability, and one (1) URL Validation Vulnerability. This single patch is considered Critical by Microsoft and covers the following CVE entries: </p>
<p>CVE-2009-4074 </p>
<p>CVE-2010-0027 </p>
<p>CVE-2010-0244 </p>
<p>CVE-2010-0245 </p>
<p>CVE-2010-0246 </p>
<p>CVE-2010-0247 </p>
<p>CVE-2010-0248 </p>
<p>CVE-2010-0249 </p>
<p>Customers should apply this update as soon as possible. The update will also be sent through the Automatic update mechanism. </p>
<p>http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx</p>
<p>http://www.microsoft.com/technet/security/bulletin/ms10-jan.mspx</p>
]]></content:encoded>
			<wfw:commentRss>http://www.informationarmor.com/2010/01/22/ms10-002/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
