Apple releases AirPort security update

Opinion
Sep 25, 20064 mins

* Patches from Apple, Ubuntu, Mandriva, others * Beware password-stealing Trojan that targets user credentials for Yahoo Messenger * Microsoft gets credit for tightening security, and other interesting reading

Today’s bug patches and security alerts:

Apple releases AirPort security update

A new security update from Apple fixes a few buffer overflow flaws in its AirPort wireless router. It also addresses a few reliability-related issues.

**********

Outlook vulnerable to critical VML bug

A critical bug in the Internet Explorer browser also affects users of the Outlook 2003 e-mail client, making it much more serious than previously thought. Microsoft will be patching the flaw in the October 10 “Patch Tuesday” release. IDG News Service, 09/21/06.

Related:

New security group patches latest IE bug

**********

Linux vendors patch gzip flaw

Multiple flaws in the gzip compression library could be exploited to run malicious code on an affected system. Fixes are available from:

rPath

Mandriva

OpenPKG

FreeBSD

**********

Trustix releases “multi” update

The latest update from Trustix fixes flaws in freetype, gnutls and gzip. The most serious of the flaws could be exploited to run malicious code on an affected system.

**********

New updates from Ubuntu:

Firefox (multiple flaws)

Thunderbird (multiple flaws)

**********

New patches from Mandriva:

Firefox (multiple flaws)

gnutls (signature forgery)

**********

Today’s roundup of virus alerts:

Troj/Nethell-E — A Trojan that intercepts Web traffic looking for login information. It is installed as a COM object on the infected Windows machine. (Sophos)

Troj/Keylog-HD — A Trojan that can communicate with remote sites via HTTP. It displays a three-photo slideshow titled “Victoria Stasova” and drops “svchst.exe” in the Windows folder. (Sophos)

Troj/SpyDldr-J — A virus that drops corrupted executables on the infected host in an effort to trick the owner into thinking they have spyware, then tries to download additional malware to “fix” the problem. (Sophos)

Troj/IRCBot-RV — A Trojan that could allow outsiders access to the infected host. It installs “scvhost.exe” in the Windows folder. (Sophos)

W32/Looked-W — This Trojan attempts to infect other EXE files installed on the target host. It initially drops “Dll.dll” in the Windows folder. (Sophos)

W32/Looked-Y — This Looked variant will disable antivirus software and can communicate with remote servers via HTTP. It installs “rundl132.exe” in the Windows directory. (Sophos)

W32/Vanebot-M — An IRC backdoor worm that spreads through network shares by exploiting known Windows flaws and also through the Yahoo and MSN instant messaging services. It installs “dllcachedragonage.exe” off the Windows System directory. (Sophos)

W32/Vanebot-O — A second similar Vanebot variant that uses the same directory to drop its payload, but the infected file is “mswincom32.exe”. (Sophos)

Troj/Sappit-B — A password-stealing Trojan that targets user credentials for Yahoo Messenger and can disable certain security tools. (Sophos)

Troj/LowZone-CX — This virus tries to reduce the overall security level of the infected host. It drops “bikini.exe” in the Windows System folder. (Sophos)

W32/Stration-AE — A Windows worm that can spread through e-mail (no details given) and drops a number of files, including “tserv.exe” in the Windows System folder. (Sophos)

W32/WinLose-A — A virus that periodically checks for the presence of USB and floppy drives and then copies itself to any device it find. In the process, it displays an “End-user license agreement”. It initially installs “AllMyLifeToLive.exe” and “LiveForever.exe” in the My Documents folder. (Sophos)

Troj/Lineag-ABA — A basic backdoor Trojan that installs itself as “rundll32.exe” in the Intel directory. (Sophos)

**********

From the interesting reading department:

Microsoft gets credit for tightening security

CodeRed, Nimda and Blaster. These high-profile worms, which exploited flaws in Microsoft’s Windows operating system and other applications, made Microsoft the butt of security jokes and forced the company to reexamine its approach to developing secure software. IDG News Service, 09/22/06.

U.S. Commerce Department reports loss of 1,137 laptops

The U.S. Commerce Department reported that 1,137 laptops have been lost or stolen since 2001, with 249 of them containing some degree of personal data. IDG News Service, 09/22/06.

Spam fighters cede ground in escalating conflict

Computer security analysts who fight spam face the same thankless task as goalkeepers: They don’t get much credit for the unsolicited e-mail they stop, only demerits for the ones that get through. IDG News Service, 09/21/06.

**********