Computer Security Global Security Mag Online anti virus spywares job oofers telecom and network security

En francais English Language
Security Vulnerability Malware Update Product Reviews Business News MAGIC QUADRANT Market News
WHITE PAPER Special Reports Opinion EVENTS Diary Guide & Podcast
Jobs International News CONTACTS TRAINING    
Subscribe to our
free NewsLetter


N°5 - November 2008
Next Issues
Subscriptions - Publicity

Google

 Flux RSS
 











Sourcefire Delivers Protection Ahead of Microsoft Tuesday Vulnerability
December 2007  by Sourcefire
Open source innovator and SNORT(R) creator, Sourcefire, Inc. announced that the Sourcefire Vulnerability Research Team (VRT) delivered rules that protected Sourcefire customers and Snort users for close to a month prior to today’s Microsoft vulnerability disclosure (Microsoft Security Bulletin MS07-061). Sourcefire’s Security Enhancement Update (SEU) 111, published on October 17, 2007, addressed today’s vulnerability, which impacts Microsoft Windows and Internet Explorer.

"Sourcefire customers and Snort users depend on us to deliver the best protection as quickly as possible, and we consistently live up to this expectation on Microsoft Tuesdays, often delivering coverage before the vulnerability is announced," said Matt Watchinski, Director of the Sourcefire Vulnerability Research Team. "This fast and comprehensive protection, combined with Sourcefire’s innovative security solutions, provides users with confidence that their critical assets are secure from both known and unknown threats."

Prior to Microsoft’s disclosure earlier today, the Sourcefire VRT had already created, tested and delivered Snort rules designed to detect attacks targeting the Microsoft vulnerability identified in Microsoft Security Bulletin MS07-061. This critical Internet Explorer 7 remote code execution vulnerability exists in the way that the Windows shell handles specifically crafted URIs (uniform resource identifiers) that are passed to it. If the Windows shell did not sufficiently validate these URIs, an attacker could exploit this vulnerability and execute arbitrary code. Microsoft has only identified ways to exploit this vulnerability on systems using Internet Explorer 7. However, the vulnerability exists in a Windows file, Shell32.dll, which is included in all supported editions of Windows XP and Windows Server 2003.



< previous      next >















 
Stay informed with Global Security Mag newsletters
copyright® 2007 S.I.M. Publicité
S'identifier  ADMIN

IT security solution(s), IT security , anti virus, IT security protection, virus, job offer/employment , network security news, network security , IT security magazine, virus alert, special report on IT security/IT security feature, IT security project, biometry, telecom network security, spyware security/spyware protection, trojan information, trojan, IT intrusion, spam, email security, anti-spam software, firewall security/firewall protection, firewall, telecom security, hackers/cyber criminals, trojan horse, storage, SAN, FNA, IT backup, hacker, cryptography, ISO 27001, ISO 17779, single sign-one, authentification, vulenrability, VoIP, ToIP, videosurveillance, SAAS, virtualization, SAAS, dematerialization