[ISN] Secunia Weekly Summary - Issue: 2011-36

From: InfoSec News <alerts_at_private>
Date: Tue, 13 Sep 2011 09:35:30 -0500 (CDT)
========================================================================

                   The Secunia Weekly Advisory Summary
                         2011-09-02 - 2011-09-09

                        This week: 57 advisories

========================================================================
Table of Contents:

1.....................................................Word From Secunia
2....................................................This Week In Brief
3...............................This Weeks Top Ten Most Read Advisories
4................................................Secunia Community News
5................................................Secunia Corporate News
6..................................................This Week in Numbers

========================================================================
1) Word From Secunia:

The new Secunia Corporate Software Inspector (CSI) 5.0 is officially
launched
"Every business has different patch management practices and needs, and
therefore shouldn't have to conform to solution restrictions, rather the
solution should adapt to the needs of each business. The Secunia CSI 5.0
has been developed to give businesses worldwide exactly what they have
asked for in a patch management solution. Flexibility and customization
are words that epitomise version 5.0." Morten R. Stengaard, Secunia
Product Manager

Watch the launch video here:
http://www.youtube.com/user/Secunia#p/a/u/1/x6H4a0f2ZkQ

Find out more here:
http://secunia.com/company/blog_news/news/250

========================================================================
2) This Week in Brief:

Multiple vulnerabilities have been reported in Symantec Enterprise
Vault, which can be exploited by malicious people to cause a DoS
(Denial of Service) or compromise a vulnerable system.

http://secunia.com/advisories/45834/

  --

Luigi Auriemma has discovered multiple vulnerabilities in BroadWin
WebAccess Client, which can be exploited by malicious people to
compromise a user's system.

http://secunia.com/advisories/45820/

  --

Qixu Liu has discovered a vulnerability in KnFTP, which can be
exploited by malicious people to compromise a vulnerable system.

http://secunia.com/advisories/45907/

========================================================================
3) This Weeks Top Ten Most Read Advisories:

For more information on how to receive alerts on these vulnerabilities,
subscribe to the Secunia business solutions:
http://secunia.com/advisories/business_solutions/

1.  [SA45606] Apache HTTP Server ByteRange Filter Denial of Service
               Vulnerability
2.  [SA45815] GTK+ Insecure Library Loading Vulnerability
3.  [SA45583] Adobe Flash Player Multiple Vulnerabilities
4.  [SA45834] Symantec Enterprise Vault Outside In Module
               Vulnerabilities
5.  [SA45872] IBM HTTP Server ByteRange Filter Denial of Service
               Vulnerability
6.  [SA45874] Red Hat update for rsyslog
7.  [SA45848] rsyslog "parseLegacySyslogMsg()" Malformed TAG
               Off-By-Two Vulnerability
8.  [SA45173] Sun Java JRE Insecure Executable Loading Vulnerability
9.  [SA45732] Cisco Quad HTTP Server ByteRange Filter Denial of Service
               Vulnerability
10. [SA45841] Joomla! Simple File Upload Module Arbitrary File Upload
               Vulnerability

========================================================================
4) Secunia Community News

SC Magazine
New Secunia tool offers Microsoft WSUS and patches from more than 2,000
vendors.

Read more:
http://www.scmagazineuk.com/new-secunia-tool-offers-microsoft-wsus-and-patches-from-more-than-2000-vendors/article/210974/

Video: What's new in the Secunia CSI 5.0?
Secunia's Customer Support Center presents a step-by-step guide to all
the new features in 5.0.

Watch the You Tube video here:
http://www.youtube.com/user/Secunia#p/a/u/0/mNm0NNaaCrQ

Event: ISF Annual World Congress, Berlin, Germany, 18th -20th September
2011
Join Stefan Frei, Secunia's Research Analyst Director and hear him
present "Fixing the Fundamental Failures of End-Point Security:
Managing vulnerabilities when perimeter protection has failed." (18th
September @ 12:15 pm CET).
Find out more:
https://www.securityforum.org/?page=publiccongress

========================================================================
5) Secunia Corporate News

The Secunia Vulnerability Intelligence Manager (VIM) enables you to
simplify and strategize your handling of emerging threats.
Read more and request a free trial:
http://secunia.com/products/corporate/vim/

========================================================================
6) This Week in Numbers

During the past week 57 Secunia Advisories have been released. All
Secunia customers have received immediate notification on the alerts
that affect their business.

This weeks Secunia Advisories had the following spread across platforms
and criticality ratings:

Platforms:
   Windows             :      8 Secunia Advisories
   Unix/Linux          :     27 Secunia Advisories
   Other               :      2 Secunia Advisories
   Cross platform      :     19 Secunia Advisories

Criticality Ratings:
   Extremely Critical  :      0 Secunia Advisories
   Highly Critical     :     12 Secunia Advisories
   Moderately Critical :     18 Secunia Advisories
   Less Critical       :     22 Secunia Advisories
   Not Critical        :      5 Secunia Advisories

========================================================================

Secunia recommends that you verify all advisories you receive,
by clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only use
those supplied by the vendor.

Definitions: (Criticality, Where etc.)
http://secunia.com/advisories/about_secunia_advisories/

Subscribe:
http://secunia.com/advisories/weekly_summary/

Contact details:
Web	: http://secunia.com/
E-mail	: support_at_private
Tel	: +45 70 20 51 44
Fax	: +45 70 20 51 45


_____________________________________________________________
Register now for the #HITB2011KUL - Asia's premier
deep-knowledge network security event now in it's 9th year!
http://conference.hitb.org/hitbsecconf2011kul/
Received on Tue Sep 13 2011 - 07:35:30 PDT

This archive was generated by hypermail 2.2.0 : Tue Sep 13 2011 - 07:39:08 PDT