* Patches from Debian, Ubuntu, Mandriva, others * New Trojan calls on Skype * How do you secure 64,000 e-mail in-boxes?, and other interesting reading
endif; ?>Today’s bug patches and security alerts:
Exploit-for-sale hacker pins bug on Vista’s e-mail app
A just-disclosed bug in Windows Vista’s built-in e-mail program can be used by hackers to run malicious code on a victimized PC, said a researcher today who two weeks ago touted an exploit-for-sale service. Computerworld, 03/23/07.
**********
A denial-of-service vulnerability in the tcpdump network monitoring tool has been patched by Debian. An attacker could exploit a buffer overflow to trigger the denial of service.
**********
Two new updates from Ubuntu:
file (heap overflow, code execution)
**********
Three new patches from Mandriva:
inkscape (format string, code execution)
file (heap overflow, code execution)
**********
Today’s virus news:
New Trojan calls on Skype
Another Trojan horse is spreading through the Internet telephone network of Skype. The malicious code, known as both Warezov and Stration, is similar to an earlier version detected in February, but with anew URL and a new version of the malicious code, according to an alert posted Thursday by Websense. IDG News Service, 03/23/07.
**********
From the interesting reading department:
How do you secure 64,000 e-mail in-boxes?
In this age of unrelenting spam, it’s hard to imagine the work required to secure 64,000 in-boxes from viruses, phishing scams, unwanted solicitations and other e-mail threats. Network World, 03/23/07.
Study: Israel a hotbed of Internet attacks
Israel unfortunately is home to the most malicious Internet activity per Internet user, said Symantec’s twice-yearly Internet Security Threat Report issued on Monday. The report covered the second half of 2006. PC World, 03/21/07.




