[ISN] Secunia Weekly Summary - Issue: 2011-11

From: InfoSec News <alerts_at_private>
Date: Fri, 18 Mar 2011 01:42:05 -0600 (CST)
========================================================================

                  The Secunia Weekly Advisory Summary                  
                        2011-03-10 - 2011-03-17                        

                       This week: 67 advisories                        

========================================================================
Table of Contents:

1.....................................................Word From Secunia
2....................................................This Week In Brief
3...............................This Weeks Top Ten Most Read Advisories
4................................................Secunia Community News
5................................................Secunia Corporate News
6..................................................This Week in Numbers
========================================================================
1) Word From Secunia:

"Based on what you've seen in the field, how important is vulnerability
management in the overall security architecture? Why do you think some
companies still think it's not that important and shift all the blame
onto software developers?"

This is one of the questions that InSecure Magazine posed to Stefan
Frei, Secunia's Research Analyst Director in its April Q&A interview on
the subject of security research and Vulnerability Management.

Read more:
http://secunia.com/company/blog_news/articles/193/

========================================================================
2) This Week in Brief:

Windows Applications Insecure Library Loading

The Official, Verified Secunia List:
http://secunia.com/advisories/windows_insecure_library_loading/

The list is continuously updated as we confirm vulnerability reports,
remember to check back regularly to see if any of your programs are
affected.

 --

A vulnerability has been reported in Adobe Flash Player, which can be
exploited by malicious people to compromise a user's system.

Read more:
http://secunia.com/advisories/43751/

 --

A vulnerability has been reported in Google Chrome, which can be
exploited by malicious people to potentially compromise a user's
system.

Read more:
http://secunia.com/advisories/43748/

========================================================================
3) This Weeks Top Ten Most Read Advisories:

For more information on how to receive alerts on these vulnerabilities,
subscribe to the Secunia business solutions:
http://secunia.com/advisories/business_solutions/

1.  [SA43751] Adobe Flash Player Unspecified Code Execution
              Vulnerability
2.  [SA43683] Google Chrome Multiple Vulnerabilities
3.  [SA43262] Sun Java JDK / JRE / SDK Multiple Vulnerabilities
4.  [SA43267] Adobe Flash Player Multiple Vulnerabilities
5.  [SA43748] Google Chrome Style Handling Memory Corruption
              Vulnerability
6.  [SA43696] Apple Safari Multiple Vulnerabilities
7.  [SA43772] Adobe Reader/Acrobat authplay.dll Unspecified Code
              Execution Vulnerability
8.  [SA43628] Microsoft Windows Remote Desktop Client Insecure Library
              Loading Vulnerability
9.  [SA35967] Microsoft Visual Studio Active Template Library Three
              Vulnerabilities
10. [SA43757] Google Chrome Flash Player Unspecified Code Execution
              Vulnerability

========================================================================
4) Secunia Community News

Videos:
Bank Info Security interviewed Thomas Kristensen, Secunia's CSO about
the timely updating of vulnerable programs and why securing end-points
is important for both consumers and companies.

Watch the video here:
http://www.bankinfosecurity.com/rsa2011video/kristensen.html

Patch Tuesday webinars:
For March Microsoft noted that there were only 3 patches for 4
vulnerabilities. However all vulnerabilities were highly critical and
consistent exploit code was likely according to Microsoft.

Read more:
http://www.youtube.com/user/Secunia#p/a/u/0/F2Hi3ag2dMM

Vulnerability management:
Keep your private end-points secure against vulnerabilities for free by
using the Secunia PSI or the Secunia OSI:
http://secunia.com/products/consumer/

========================================================================
5) Secunia Corporate News

Events:
Secunia will be exhibiting at this year's Microsoft Management Summit
(MMS) in Las Vegas, USA (21-25 March).

Read more:
http://secunia.com/company/events/mms_2011/

Microsoft WSUS:
Easy patching of third-party programs is now possible with Microsoft
WSUS.

Read more:
http://secunia.com/products/corporate/CSI/landing/helpnet/wsus

========================================================================
6) This Week in Numbers

During the past week 67 Secunia Advisories have been released. All
Secunia customers have received immediate notification on the alerts
that affect their business.

This weeks Secunia Advisories had the following spread across platforms
and criticality ratings:

Platforms:
  Windows             :      7 Secunia Advisories
  Unix/Linux          :     35 Secunia Advisories
  Other               :      2 Secunia Advisories
  Cross platform      :     23 Secunia Advisories

Criticality Ratings:
  Extremely Critical  :      2 Secunia Advisories
  Highly Critical     :     15 Secunia Advisories
  Moderately Critical :     27 Secunia Advisories
  Less Critical       :     12 Secunia Advisories
  Not Critical        :     11 Secunia Advisories

========================================================================

Secunia recommends that you verify all advisories you receive,
by clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only use
those supplied by the vendor.

Definitions: (Criticality, Where etc.)
http://secunia.com/advisories/about_secunia_advisories/

Subscribe:
http://secunia.com/advisories/weekly_summary/

Contact details:
Web	: http://secunia.com/
E-mail	: support_at_private
Tel	: +45 70 20 51 44
Fax	: +45 70 20 51 45


___________________________________________________________      
Tegatai Managed Colocation: Four Provider Blended
Tier-1 Bandwidth, Fortinet Universal Threat Management,
Natural Disaster Avoidance, Always-On Power Delivery 
Network, Cisco Switches, SAS 70 Type II Datacenter. 
Find peace of mind, Defend your Critical Infrastructure.
http://www.tegataiphoenix.com/
Received on Fri Mar 18 2011 - 00:42:05 PDT

This archive was generated by hypermail 2.2.0 : Fri Mar 18 2011 - 00:48:11 PDT