* Patches from FreeBSD, SuSE, others * Beware yet more variants of Agobot * CA goes after patch management, and other interesting reading Today’s bug patches and security alerts:Microsoft releases Service Pack 2 for ISA Server 2000A new service pack is available for Microsoft Internet Security and Acceleration (ISA) Server 2000 that includes all fixes to date for the system as well as some new updates that enhance security and stability. Microsoft urges all users to install SP2. For more, go to:https://www.nwfusion.com/go2/0524bug2a.html **********FreeBSD patches msync A cache consistency problem in msync could result in user changes not being committed to disk. FreeBSD has issued a fix for the problem:https://www.nwfusion.com/go2/0524bug2b.html**********SuSE, Conectiva patch kdelibsA flaw in kdelibs telnet URI handling could be exploited by an attacker to truncate or overwrite files on the affected system. For more, go to:Conectiva: https://www.nwfusion.com/go2/0524bug2c.htmlSuSE:https://www.suse.com/de/security/2004_14_kdelibs.html********** Conectiva patches Libneon:A buffer overflow has been found in the Neon HTTP and WebDav clients. Fixes are available. For more, go to:https://www.nwfusion.com/go2/0524bug2d.htmlConectiva releases mailman patchThree flaws have been patched in the Conectiva mailman implementation. Two cross scripting vulnerabilities and password retrieval issue have been fixec. For more, go to:https://www.nwfusion.com/go2/0524bug2e.html**********19 patches from GentooGentoo has issued a number of updates that past few weeks. For those that use the Linux variant, here they are:Apache 1.3 – Multiple flaws:https://forums.gentoo.org/viewtopic.php?t=178094SquirelMail – Cross scripting vulnerabilities:https://forums.gentoo.org/viewtopic.php?t=176067Midnight Commands (MC) – Several buffer overflows/format string flaws:https://forums.gentoo.org/viewtopic.php?t=178096MySQL – Non-secure temporary files:https://forums.gentoo.org/viewtopic.php?t=177773Opera telnet – URI handling vulnerability:https://forums.gentoo.org/viewtopic.php?t=177697Firebird – Buffer overflow:https://forums.gentoo.org/viewtopic.php?t=176732Cadaver – Heap overflow:https://forums.gentoo.org/viewtopic.php?t=175698Subversion – Buffer overflow:https://forums.gentoo.org/viewtopic.php?t=175681Neon – Heap overflow:https://forums.gentoo.org/viewtopic.php?t=175676CVS – Heap overflow:https://forums.gentoo.org/viewtopic.php?t=175675Icecast – DoS vulnerabilityhttps://forums.gentoo.org/viewtopic.php?t=175282ProFTPD – Bypass Access Control List:https://forums.gentoo.org/viewtopic.php?t=175266Pount – Format string vulnerability:https://forums.gentoo.org/viewtopic.php?t=175183Exim – Buffer overflow:https://forums.gentoo.org/viewtopic.php?t=173594Libpng – DoS vulnerability:https://forums.gentoo.org/viewtopic.php?t=173593Utempter – Symlink flaw:https://forums.gentoo.org/viewtopic.php?t=173046OpenOffice.org – DAV server flaw:https://forums.gentoo.org/viewtopic.php?t=172298ClamAV – VirusEvent parameter vulnerability:https://forums.gentoo.org/viewtopic.php?t=172264LHa – Multiple vulnerabilities:https://forums.gentoo.org/viewtopic.php?t=171339**********Today’s roundup of virus alerts:W32/Agobot-JA – An Agobot variant that spreads via network shares and uses IRC to provide backdoor access. It also renames any file starting with “sound” and attempts to disable access to security-related Web sites. (Sophos)W32/Agobot-JB – What is this, the one-millionth variant of Agobot? Like it’s predecessors this exploits network shares to spread and uses IRC to provide backdoor access to the infected machine. It kills security related applications, prevents access to security sites and can be used to sniff data. (Sophos)Troj/Sdbot-BI – A Trojan horse that displays the message “‘Error-38427 A valid dll file was not found, Windows is now deleting file.” when it infects a system. The virus provides backdoor access via IRC and uses network shares to spread. (Sophos)Troj/StartPa-AE – This Trojan horse changes the Internet Explorer start page each time the infected computer is booted. The malicious code could be dropped by another virus. (Sophos)Troj/Adtoda-A – A virus that displays two messages on the infected screen warning of some sort of Microsoft penalty. The virus then freezes the machine, creating the need to reboot it. (Sophos)W32/Francette-K – This virus acts as a backdoor, providing access via an IRC channel. The virus spreads by exploiting machines already infected by MyDoom. (Sophos)W32/Rbot-T – A keystroke-logging virus that also attempts to delete certain network shares. The virus spreads via network shares and uses IRC to provide backdoor access. It installs itself as NAVSCAN64.EXE in the Windows System folder. (Sophos)**********From the interesting reading department:CA goes after patch managementComputer Associates Tuesday detailed products and services to couple vulnerability assessments with patch deployment and management. Network World Fusion, 05/25/04.https://www.nwfusion.com/news/2004/0525capatch.html?nlMicrosoft outlines identity management roadmapMicrosoft this week laid out the roadmap for its identity management platform, including federation services that will ship next year and eventually provide Web single sign-on features. Network World Fusion, 05/25/04.https://www.nwfusion.com/news/2004/0525msid.html?nlCeBit: SyNet shows new security toolsSecuring data and shared PCs is about to get easier: SyNet Electronics has announced two applications, Secure Send and PC-Keeper, for those tasks. PC World, 05/26/04.https://www.nwfusion.com/news/2004/0526cebitus.html?nlNetwork Associates readies updated security appliancesNetwork Associates next week will make available the beta version of its WebShield line of gateway security appliances, adding filtering controls to block inbound or outbound content, and set policy based on usage groups. Network World Fusion, 05/24/04.https://www.nwfusion.com/news/2004/0524netassoc.html?nlCan software patching be automated?How speedily can software patching be done and whether the process in most instances can or should be automated. Network World Fusion, 05/24/04.https://www.nwfusion.com/weblogs/security/005182.html?nlTech Ed: SQL Server getting security boostsMicrosoft at its Tech Ed conference in San Diego on Tuesday will tout plans to add data encryption to its SQL Server database and seek federal government security certification for the platform as well. InfoWorld, 05/25/04.https://www.nwfusion.com/news/2004/0525techsql.html?nlViruses nip Russia after the Cold WarFor all its disadvantages, the former Soviet Union had one hugely overlooked advantage: it kept hackers, crackers and virus writers confined inside the country by restricting their access to the Internet. IDG News Service, 05/25/04.https://www.nwfusion.com/news/2004/0525virusnipr.html?nlSecure coding attracts interest, investmentA new product from computer security firm @stake will help developers search computer code for errors, security holes andother flaws that malicious hackers can use to break applications – and break into computers. IDG News Service, 05/24/04.https://www.nwfusion.com/news/2004/0524securcodin.html?nl Related content news analysis Cisco joins $10M funding round for Aviz Networks' enterprise SONiC drive Investment news follows a partnership between the vendors aimed at delivering an enterprise-grade SONiC offering for customers interested in the open-source network operating system. By Michael Cooney Dec 01, 2023 3 mins Network Management Software Industry Networking news Cisco CCNA and AWS cloud networking rank among highest paying IT certifications Cloud expertise and security know-how remain critical in building today’s networks, and these skills pay top dollar, according to Skillsoft’s annual ranking of the most valuable IT certifications. Demand for talent continues to outweigh s By Denise Dubie Nov 30, 2023 7 mins Certifications Network Security Networking news Mainframe modernization gets a boost from Kyndryl, AWS collaboration Kyndryl and AWS have expanded their partnership to help enterprise customers simplify and accelerate their mainframe modernization initiatives. By Michael Cooney Nov 30, 2023 4 mins Mainframes Cloud Computing Data Center news AWS and Nvidia partner on Project Ceiba, a GPU-powered AI supercomputer The companies are extending their AI partnership, and one key initiative is a supercomputer that will be integrated with AWS services and used by Nvidia’s own R&D teams. By Andy Patrizio Nov 30, 2023 3 mins CPUs and Processors Generative AI Supercomputers Podcasts Videos Resources Events NEWSLETTERS Newsletter Promo Module Test Description for newsletter promo module. Please enter a valid email address Subscribe