CERT warns on Sun server flaw
News Users of Sun's RaQ 4 Server appliance have been warned in the latest CERT advisory of a serious vulnerability affecting the units. A remotely exploitable vulnerability has been discovered in Sun Cobalt RaQ 4 Server Appliances.may allow remote...
[December 13, 2002, 9:50]
Sun says Java flaw has been patched
News A news story from ZDNet Australia based on a CERT advisory identified vulnerabilities within Sun's Java Runtime Environment. The Australian CERT advisory published on Thursday, an update of an original advisory posted on 4 June, summarises two Java...
[July 13, 2007, 9:00]
SSH opens computers to attack
News Vulnerabilities have been found in multiple SSH implementations that could allow an attacker to execute code or create a denial of service on servers and clients, according to an advisory from CERT, a security alert service.
[December 18, 2002, 15:47]
Flaws in common software threaten Net
News In the Tuesday advisory, the CERT/CC warned that the flaws could be used to attack those basic components of the Internet. As previously reported, the Computer Emergency Response Team (CERT) Coordination Center, a major clearinghouse for security...
[February 13, 2002, 8:40]
Flaw threatens source of open source
News In advisory CA-2003-02, "Double-Free Bug in CVS Server," CERT warns that any of the source code maintained in CVS repositories could potentially contain malicious code, including backdoors and Trojan programs.
[February 10, 2003, 12:52]
CERT warns of key ISC vulnerability
News These vulnerabilities are stack-based buffer overflows," an advisory from CERT said. CERT has warned of a serious security vulnerability in ISC's DHCP (Dynamic Host Configuration Protocol) software, which is shipped with multiple operating systems...
[January 16, 2003, 8:48]
Researchers warn of XML library flaws
News This led to Cert-FI warning in an advisory on Thursday that XML libraries were susceptible to denial-of-service attacks, and that multiple open-source software libraries were potentially vulnerable to hacking.
[August 6, 2009, 13:06]
Adobe Reader JavaScript security flaw emerges
News The vulnerability appears to be due to an error in the 'getAnnots()' JavaScript function and exploiting it could allow someone to remotely execute code on the machine, according to an advisory from the US-Cert.
[April 29, 2009, 8:53]
Adobe patches zero-day Reader flaw
News The vulnerability can be exploited with little or no user interaction if the Windows Indexing Service processes a malicious PDF file stored on the system, or if Windows Explorer displays a folder containing a malicious PDF file, the Cert advisory...
[March 11, 2009, 7:47]
Experts: Microsoft's advice won't stop Downadup
News Microsoft's guidelines for disabling AutoRun are not fully effective, which could be considered a vulnerability," said the US-Cert advisory. The US-Cert advisory gives code it says will disable AutoRun effectively.
[January 23, 2009, 12:11]
Adobe to plug critical Flash hole next week
News An attacker can exploit the vulnerability by luring someone to a website hosting a specially crafted Shockwave Flash file, US-Cert said in an advisory Thursday. The Adobe Flash browser plug-in is available for multiple web browsers and operating...
[July 24, 2009, 9:15]
SIP flaw causes problems for Cisco
News A recent CERT Advisory (CA-2003-06) and a Cisco bulletin initially released on February 21 detail these threats as well as possible workarounds. These vulnerabilities were reported by Oulu University Secure Programming Group (OUSPG Finland), which...
[March 10, 2003, 10:00]
F-Secure warns of archive protocol danger
News Other software affected includes Debian libarchive1, FreeBSD libarchive 3, Gentoo app-arch/libarchive and Suse libarchive, according to an advisory from the Finnish computer emergency response team, CERT-FI.
[March 19, 2008, 13:07]
Sendmail breached by new flaw
News Most medium-sized to large organisations are likely to have at least one vulnerable Sendmail server," CERT said in an advisory. US-based vulnerability coordination centre CERT claimed most companies are likely to be affected by the new glitch.
[March 31, 2003, 8:30]
IE flaw danger increases as exploit code released
News According to the US-CERT advisory, the problem is caused by how Internet Explorer handles certain attributes of frames, which is a way of displaying Web content in separate parts of the browser window.
[November 5, 2004, 7:23]
Researcher slams open-source compulsion
Talkback Click to read CERT Advisory for OpenSSH. Click to read CERT Advisory for Sendmail. The most important IT watchdog, Carnegie Mellon University's CERT Coordination Center, has identified security vulnerabilities in two popular open source programs...
[September 24, 2003, 10:52]
Heard the one about the Stages worm?
News According to a CERT advisory released Monday, the security weakness in Windows occurs because the operating system assumes users do not know the extensions for certain file types. A file that appears to be innocent based on its viewable file name...
[June 20, 2000, 8:35]
Hackers put Net security watchdog out of action
News While CERT is an important security advisory group, several others exist, including the Computer Incident Advisory Center, so-called information sharing and analysis centres, and several advisory sites run by security companies.
[May 24, 2001, 9:30]
Threat from TCP hole 'small' - researcher
News The US Computer Emergency Response Team (US-CERT) has issued an advisory, referencing a similar warning released almost three years ago that mentioned comparable attacks. Moreover, CERT also recommends that companies encrypt their data to further...
[April 22, 2004, 9:05]
Secret security holes released to public
News He claims to have stolen them from a firm that had been working with the Computer Emergency Response Team (CERT) Coordination Center, a clearinghouse for security information. I am not in any way connected with CERT or any of the vendors involved...
[March 20, 2003, 10:25]



