* Patches from Linux, Apple, others * Beware another version fo the Sdbot Trojan * Radware switch targets attacks, and other interesting reading Network World needs your help. We’re looking for the weirdest, most wild, descriptive and/or silly network product name you’ve come across. Got one to share? Fill out this short form and you could win a fabulous Network World prize: http://www.nwfusion.com/survey/favprod2003.htmlNetwork World needs your help. We’re looking for the weirdest, most wild, descriptive and/or silly network product name you’ve come across. Got one to share? Fill out this short form and you could win a fabulous Network World prize:https://www.nwfusion.com/survey/favprod2003.htmlToday’s bug patches and security alerts: Heap overflow in rsyncA heap overflow vulnerability in the rsync application can be exploited with the recently discovered Linux kernel flaw to compromise Linux servers. Fixes are available. For more, go to: Official rsync site:https://rsync.samba.org/Conectiva:https://www.nwfusion.com/go2/1208bug1a.htmlDebian (temporary location):https://klecker.debian.org/~joey/rsync/ EnGarde:https://www.nwfusion.com/go2/1208bug1b.htmlMandrake Linux:https://www.nwfusion.com/go2/1208bug1c.html OpenPKG:https://www.openpkg.org/security/OpenPKG-SA-2003.051-rsync.htmlRed Hat:https://rhn.redhat.com/errata/RHSA-2003-398.htmlSlackware:https://www.nwfusion.com/go2/1208bug1d.htmlSuSE:https://www.suse.com/de/security/team/index.htmlTrustix:https://www.nwfusion.com/go2/1208bug1e.html**********Yahoo Messenger buffer overflowA buffer overflow in Yahoo Messenger’s Open() function could be exploited via a Web page to run arbitrary commands on the affected machine. Internet Explorer users would have to change their security settings to “low” in order for this exploit to be successful. For more, go to:https://messenger.yahoo.com/security/update4.html**********Apple issues security update for SafariA security update for Mac OS X 10.3.1 and 10.2.8 fixes a problem with the way cookies are accessed in the Safari browser. The new update allows only authorized Web sites to access user cookie information. For more, go to:Mac OS X 10.3.1:https://www.info.apple.com/kbnum/n120283Mac OS X 10.2.8https://www.info.apple.com/kbnum/n120282**********More Linux kernel patchesAs we reported last week, a flaw in the Linux kernel implementation could be (and has been) used to compromise a Linux server. More fixes are available:Conectiva:https://www.nwfusion.com/go2/1208bug1f.htmlSuSE:https://www.suse.com/de/security/2003_049_kernel.txt**********Today’s roundup of virus alerts:W32/Sdbot-L – Yet another version of the Sdbot Trojan horse. This version spreads via weakly protected network shares and allows an attacker to remotely control the infected machine via IRC. (Sophos)**********From the interesting reading department:Security experts: Insider threat looms largestWhile the U.S. military is building up defenses to fend off network-based attacks from enemy states and terrorists, some say the more-insidious security problem is the threat of an insider bent on sabotage or stealing data. Network World, 12/08/03.https://www.nwfusion.com/news/2003/1208infowar.html?nlRadware switch targets attacksRadware last week debuted a security appliance that could help businesses stop Web-based attacks such as Welchia and MS-SQL Slammer at the network gates. Network World, 12/08/03.https://www.nwfusion.com/news/2003/1208radware.html?nlNetContinuum boosts security gatewayNetContinuum this week is scheduled to launch an updated version of its application-firewall appliance for protecting HTML-based and some non-Web applications from about 4,000 known attacks aimed at subverting servers. Network World, 12/08/03.https://www.nwfusion.com/news/2003/1208netcon.html?nlExpertCity tries to change its imageCompany’s GoToMyPC Corporate 4.0 is slowly winning acceptance from cautious enterprise security pros. Network World, 12/08/03.https://www.nwfusion.com/net.worker/news/2003/1215netlead.html?nl Related content brandpost Sponsored by HPE Aruba Networking Bringing the data processing unit (DPU) revolution to your data center By Mark Berly, CTO Data Center Networking, HPE Aruba Networking Dec 04, 2023 4 mins Data Center feature 5 ways to boost server efficiency Right-sizing workloads, upgrading to newer servers, and managing power consumption can help enterprises reach their data center sustainability goals. By Maria Korolov Dec 04, 2023 9 mins Green IT Servers Data Center news Omdia: AI boosts server spending but unit sales still plunge A rush to build AI capacity using expensive coprocessors is jacking up the prices of servers, says research firm Omdia. By Andy Patrizio Dec 04, 2023 4 mins CPUs and Processors Generative AI Data Center feature What is Ethernet? History, evolution and roadmap The Ethernet protocol connects LANs, WANs, Internet, cloud, IoT devices, Wi-Fi systems into one seamless global communications network. By John Breeden Dec 04, 2023 11 mins Networking Podcasts Videos Resources Events NEWSLETTERS Newsletter Promo Module Test Description for newsletter promo module. Please enter a valid email address Subscribe