* Patches from FreeBSD, Red Hat, Debian, others * Beware another variant of Agobot * With Bagle, Netsky, March comes in like a worm, and other interesting reading ‘Worm war’ behind recent virus releasesAnti-virus experts have identified new versions of three major e-mail worms and say that a “war” between rival virus writers may be to blame for the rash of outbreaks in recent weeks. New versions of the MyDoom, Netsky and Bagle have all appeared on the Internet in the last 24 hours. Researchers have uncovered text messages in two of the worms that suggests a battle is underway between virus writers, anti-virus companies said on Wednesday. IDG News Service, 03/03/04.https://www.nwfusion.com/news/2004/0303wormwar.html?nlToday’s bug patches and security alerts: FreeBSD patches tcpA flaw in the way FreeBSD handles out-of-sequence TCP packets could be exploited by an attacker to launch a low-bandwidth denial-of-service attack against the affected machine. For more, go to: https://www.nwfusion.com/go2/0301bug2a.html**********Red Hat issues patch for libxml2A flaw in the way libxml2 parses remote data retrieved using FTP or HTTP could be exploited to cause a buffer overflow. This in turn could be used to run arbitrary code on the affected machine. For more, go to:https://rhn.redhat.com/errata/RHSA-2004-091.htmlRed Hat releases updates SANE packages According to an alert from Red Hat, “A recent change in the way that the dynamic loader searches for shared libraries has exposed a problem with the SANE ‘backend’ shared libraries. This problem may result in scanners not being recognized as available by SANE.” For more, go to:https://rhn.redhat.com/errata/RHBA-2004-043.html**********SGI updates 11, 12 and 13 Over the past week SGI has pushed out three updates that fix a number of problems in various packages used in ProPack v2.4 and ProPack v2.3. For more, go to:SGI update #11:https://www.nwfusion.com/go2/0301bug2b.htmlSGI update #12:https://www.nwfusion.com/go2/0301bug2c.htmlSGI update #13:https://www.nwfusion.com/go2/0301bug2d.html**********Debian updates mips kernel 2.4.19Several vulnerabilities in Debian’s Linux kernel 2.4.19 for mips systems have been patched. For more, go to:https://www.debian.org/security/2004/dsa-450A similar kernel update is available for 2.2.22 alpha kernel:https://www.debian.org/security/2004/dsa-454Debian issues fix for Apache mod_pythonA flaw in the Apache Python module for Debian could be exploited in a denial-of-service against the affected machine. For more, go to:https://www.debian.org/security/2004/dsa-452Debian patches xboing flawA buffer overflow in the xboing game could be exploited by a local user to gain the privileges of the group ‘games’. For more, go to:https://www.debian.org/security/2004/dsa-451**********Flaw in Symantec Gateway Security 2.0 fixedA cross scripting vulnerability has been found in Symantec Gateway Security’s management service. This flaw could be exploited by an attacker to hijack a management session. Symantec has issued a fix for the problem:https://www.nwfusion.com/go2/0301bug2e.html**********Today’s roundup of virus alerts:W32/Hiton-A – A new mass-mailing worm being reported by Sophos, but that’s all the details they have. (Sophos)W32/Agobot-DG – Yet another Agobot variant that attempts to spread via network shares by exploiting the DCOM and RPC Windows vulnerabilities. The virus installs a backdoor to the infected system accessible by an IRC channel. (Sophos)W32/MyDoom-G – A variant of the MyDoom mass mailing worm with a twist. It won’t send itself to certain domains, such as those owned by anti-virus companies, universities or Linux vendors. (Sophos)**********From the interesting reading department:With Bagle, Netsky, March comes in like a wormConventional wisdom claims March comes in like a lion and goes out like a lamb. But with new versions of the Bagle e-mail worm and a virulent new form of Netsky virus, March’s arrival is looking more wormy than leonine. IDG News Service, 03/01/04.https://www.nwfusion.com/news/2004/0301withbagel.html?nlMicrosoft to make its software ‘behave’Microsoft’s revelation last week that it is adopting a new approach to computer security dubbed “behavior blocking” represents a radical shift in the company’s software design strategy that could pay off for attack-weary Windows users, industry watchers say. Network World, 03/01/04.https://www.nwfusion.com/news/2004/0301microsoftrsa.html?nlWhat are they thinking?Knowing hackers’ favorite attack patterns and motivations can lead to better network security. Network World, 03/01/04.https://www.nwfusion.com/research/2004/0301hackers.html?nlReview: Secure Shell softwareNew SSH Communications’ offering adds ease of use to its Tectia package. Network World, 03/01/04.https://www.nwfusion.com/reviews/2004/0301revssh.html?nlSoftware helps battle network security threatsTwo vendors recently upgraded products that promise to help network executives identify potential threats and reduce the effects of vulnerabilities on revenue-generating applications. Network World, 03/01/04.https://www.nwfusion.com/news/2004/0301simmgmt.html?nlSonicWall intrusion-prevention service on tapSonicWall is adding intrusion prevention to its IPSec VPN and firewall appliances, offering users a way to protect small and midsize businesses as well as branch offices from multiple security threats using a single device. Network World, 03/01/04.https://www.nwfusion.com/news/2004/0301infrasonicwall.html?nl Related content news Dell provides $150M to develop an AI compute cluster for Imbue Helping the startup build an independent system to create foundation models may help solidify Dell’s spot alongside cloud computing giants in the race to power AI. By Elizabeth Montalbano Nov 29, 2023 4 mins Generative AI news DRAM prices slide as the semiconductor industry starts to decline TSMC is reported to be cutting production runs on its mature process nodes as a glut of older chips in the market is putting downward pricing pressure on DDR4. By Sam Reynolds Nov 29, 2023 3 mins Flash Storage Technology Industry news analysis Cisco, AWS strengthen ties between cloud-management products Combining insights from Cisco ThousandEyes and AWS into a single view can dramatically reduce problem identification and resolution time, the vendors say. By Michael Cooney Nov 28, 2023 4 mins Network Management Software Cloud Computing opinion Is anything useful happening in network management? Enterprises see the potential for AI to benefit network management, but progress so far is limited by AI’s ability to work with company-specific network data and the range of devices that AI can see. By Tom Nolle Nov 28, 2023 7 mins Generative AI Network Management Software Podcasts Videos Resources Events NEWSLETTERS Newsletter Promo Module Test Description for newsletter promo module. Please enter a valid email address Subscribe