<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<id>tag:old.nabble.com,2006:forum-415</id>
	<title>Nabble - Security - Microsoft</title>
	<updated>2009-11-21T09:23:27Z</updated>
	<link rel="self" type="application/atom+xml" href="http://old.nabble.com/Security---Microsoft-f415.xml" />
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Security---Microsoft-f415.html" />
	<subtitle type="html"></subtitle>
	
<entry>
	<id>tag:old.nabble.com,2006:post-26481135</id>
	<title>Re: How to  prepare Windows Installation Discs</title>
	<published>2009-11-21T09:23:27Z</published>
	<updated>2009-11-21T09:23:27Z</updated>
	<author>
		<name>gremagehan</name>
	</author>
	<content type="html">Dear friends
&lt;br&gt;thank you very much for the answers. Now I must read trough and find
&lt;br&gt;that what I need.
&lt;br&gt;&lt;br&gt;The sequence of &amp;nbsp;the installation is important in my opinion.
&lt;br&gt;Is the right sequence assigned by this software (nliteos for example)? 
&lt;br&gt;&lt;br&gt;Martin
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26481135&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;gremagehan@...&lt;/a&gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hello List,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I'm looking for some Informations about preparing the Windows
&lt;br&gt;&amp;gt; Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;&amp;gt; It should be possible to prepare an installation disc with Windows
&lt;br&gt;&amp;gt; including all Service packs.
&lt;br&gt;&amp;gt; How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;&amp;gt; one &amp;nbsp;machine?
&lt;br&gt;&amp;gt; And what about the Windows 7?
&lt;br&gt;&amp;gt; We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;&amp;gt; Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;&amp;gt; OS with all the updates
&lt;br&gt;&amp;gt; than make online update with every box.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thank you for your answers
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Have a nice day
&lt;br&gt;&amp;gt; Martin
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26481135.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26377292</id>
	<title>RE: How to  prepare Windows Installation Discs</title>
	<published>2009-11-16T10:42:13Z</published>
	<updated>2009-11-16T10:42:13Z</updated>
	<author>
		<name>stewart.cawthray</name>
	</author>
	<content type="html">I have used this tool in the past to make an ISO image of all the updates required to the date the tool is run.
&lt;br&gt;&lt;a href=&quot;http://www.h-online.com/security/features/Offline-Update-746179.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.h-online.com/security/features/Offline-Update-746179.html&lt;/a&gt;&amp;nbsp;
&lt;br&gt;&lt;br&gt;Very useful for creating windows systems offline and having them fully patched prior to connecting them toi the network.
&lt;br&gt;&lt;br&gt;It is still two steps install OS then install patches but you do not need to connect to Windows Update to do it.
&lt;br&gt;&lt;br&gt;- Stewart
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377292&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377292&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On Behalf Of &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377292&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;SDeVries@...&lt;/a&gt;
&lt;br&gt;Sent: November-13-09 3:34 AM
&lt;br&gt;To: gremagehan; focus-ms
&lt;br&gt;Subject: Re: How to prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Martin,
&lt;br&gt;&lt;br&gt;You can use slip streaming to create a standardized install cd or base image. You might be better of (depending on your setup) utilizing a (RIS install for windows xp or WDS for windows 7) with a wsus server for standardized updates.
&lt;br&gt;&lt;br&gt;As I said. Depending on your network setup. For this google is your friend.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;----- Original Message -----
&lt;br&gt;From: gremagehan
&lt;br&gt;Sent: 10/11/2009 05:49 PM
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377292&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: How to &amp;nbsp;prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;Important information
&lt;br&gt;This email is solely for the use of the addressee and may contain information which is confidential. 
&lt;br&gt;Any content within this email including attachments are subject to the terms and conditions of Shaw Stockbroking Limited's (ABN 24 003 221 583) 
&lt;br&gt;disclaimer as viewable at: &lt;a href=&quot;http://www.shawstock.com.au/emaildisclaimer.asp&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.shawstock.com.au/emaildisclaimer.asp&lt;/a&gt;. 
&lt;br&gt;If you are not the intended recipient please forward this email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377292&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;broking@...&lt;/a&gt; and delete the original.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26377292.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26377105</id>
	<title>Re: How to prepare Windows Installation Discs</title>
	<published>2009-11-16T10:30:37Z</published>
	<updated>2009-11-16T10:30:37Z</updated>
	<author>
		<name>Harsh Patel</name>
	</author>
	<content type="html">HI there.
&lt;br&gt;&lt;br&gt;There are also solution like u can directly customise all the
&lt;br&gt;components of windows XP via &amp;quot;Windows XPe&amp;quot; in windows XPe u can also
&lt;br&gt;make a live Cd sort of known as Horms CD by MS and have a look at
&lt;br&gt;windows embedded standard can make vista in similar manner and would
&lt;br&gt;be cost effective also if on a large scale..
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;:)
&lt;br&gt;&lt;br&gt;2009/11/13 Jérémie Bécousse &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377105&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;jbecousse@...&lt;/a&gt;&amp;gt;:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hello,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Sorry for my bad English, i hope this message will be understandable!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; We are currently using the MS software MDT 2010 (Migration Deployment Tool)
&lt;br&gt;&amp;gt; wich allow you to install OS without human intervention.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; To realise this for windows Seven and XP you need a Windows Server 2008 R2
&lt;br&gt;&amp;gt; and MDT 2010.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Nevertheless, maybe this system isn't exactly what you are looking for,
&lt;br&gt;&amp;gt; because the CD created by this tool is just a live CD allowing the
&lt;br&gt;&amp;gt; connection to MDT server and dowloading OS, Software, Service Pack etc.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; We have realised scenarios for Windows XP and Windows 7, and we install
&lt;br&gt;&amp;gt; automatically Office, our Antivirus, TightVNC, Acrobat reader etc. with only
&lt;br&gt;&amp;gt; two clic in about 40 minutes.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; About compatibility with multiple computers, it's not a problem because even
&lt;br&gt;&amp;gt; if the OS haven't drivers for your computer, you can add them manualy in MDT
&lt;br&gt;&amp;gt; Server.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Finaly if you have 10 computers models (for exemple), you can generate image
&lt;br&gt;&amp;gt; (.wim file) at the end of the process, and then update this image througt
&lt;br&gt;&amp;gt; MDT. The advantage of updating is you haven't to reinstall completly a
&lt;br&gt;&amp;gt; computer if you only have one security fix to add!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; This tool is very powerfull, but need a lot of configuration to do this with
&lt;br&gt;&amp;gt; only two or three mouse clic. If you don't care to clic on Next button
&lt;br&gt;&amp;gt; during the installation phase, you can install MDT and create your basic
&lt;br&gt;&amp;gt; scenario in 30 minutes and deploy it in 20 minutes.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Jérémie Bécousse
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -----Message d'origine-----
&lt;br&gt;&amp;gt; De : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377105&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377105&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] De
&lt;br&gt;&amp;gt; la part de &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377105&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;gremagehan@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Envoyé : mardi 10 novembre 2009 07:50
&lt;br&gt;&amp;gt; À : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377105&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Objet : How to prepare Windows Installation Discs
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Hello List,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I'm looking for some Informations about preparing the Windows
&lt;br&gt;&amp;gt; Installation  CD's (XP Pro).
&lt;br&gt;&amp;gt; It should be possible to prepare an installation disc with Windows
&lt;br&gt;&amp;gt; including all Service packs.
&lt;br&gt;&amp;gt; How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;&amp;gt; one  machine?
&lt;br&gt;&amp;gt; And what about the Windows 7?
&lt;br&gt;&amp;gt; We prepare every week  up to 20  PC's as a part of our measurement systems.
&lt;br&gt;&amp;gt; Therefore it  is not our main topic, but I thing it is better to install
&lt;br&gt;&amp;gt; OS with all the updates
&lt;br&gt;&amp;gt; than make online update with every box.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thank you for your answers
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Have a nice day
&lt;br&gt;&amp;gt; Martin
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Thanking you.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Harsh Patel
&lt;br&gt;Team iT ELF
&lt;br&gt;SCIT ISS 9/11.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26377105.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26377392</id>
	<title>RE: How to  prepare Windows Installation Discs</title>
	<published>2009-11-13T09:43:01Z</published>
	<updated>2009-11-13T09:43:01Z</updated>
	<author>
		<name>dave kleiman-2</name>
	</author>
	<content type="html">Hi Martin,
&lt;br&gt;&lt;br&gt;Here are some write-ups that cover the XP, 2000, and 2003 server aspect. 
&lt;br&gt;&lt;br&gt;Unattended Windows Introduction:
&lt;br&gt;&lt;a href=&quot;http://unattended.msfn.org/unattended.xp/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://unattended.msfn.org/unattended.xp/&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;How to integrate software updates into your Windows installation source files:
&lt;br&gt;&lt;a href=&quot;http://support.microsoft.com/default.aspx?scid=kb;en-us;828930&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.microsoft.com/default.aspx?scid=kb;en-us;828930&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;How to slipstream hotfixes that replace pre-existing driver files:
&lt;br&gt;&lt;a href=&quot;http://support.microsoft.com/kb/814847&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.microsoft.com/kb/814847&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;After you create Windows XP Service Pack 3 slipstreamed media, your product key is not accepted
&lt;br&gt;&lt;a href=&quot;http://support.microsoft.com/kb/950722&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.microsoft.com/kb/950722&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;The Windows &amp; solution center does not list anything for slipstream with W7 yet, but I am sure it eventually will:
&lt;br&gt;&lt;a href=&quot;http://support.microsoft.com/gp/windows7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.microsoft.com/gp/windows7&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;Respectfully,
&lt;br&gt;&lt;br&gt;Dave Kleiman - &lt;a href=&quot;http://www.ComputerForensicExaminer.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.ComputerForensicExaminer.com&lt;/a&gt;&amp;nbsp;- &lt;a href=&quot;http://www.DigitalForensicExpert.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.DigitalForensicExpert.com&lt;/a&gt;&amp;nbsp;
&lt;br&gt;&lt;br&gt;4371 Northlake Blvd #314
&lt;br&gt;Palm Beach Gardens, FL 33410
&lt;br&gt;561.310.8801 
&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377392&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377392&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On Behalf Of &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377392&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;gremagehan@...&lt;/a&gt;
&lt;br&gt;Sent: Tuesday, November 10, 2009 01:50
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377392&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: How to prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26377392.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26376866</id>
	<title>RE: How to  prepare Windows Installation Discs</title>
	<published>2009-11-13T01:21:21Z</published>
	<updated>2009-11-13T01:21:21Z</updated>
	<author>
		<name>Jérémie Bécousse</name>
	</author>
	<content type="html">Hello,
&lt;br&gt;&lt;br&gt;Sorry for my bad English, i hope this message will be understandable!
&lt;br&gt;&lt;br&gt;We are currently using the MS software MDT 2010 (Migration Deployment Tool)
&lt;br&gt;wich allow you to install OS without human intervention.
&lt;br&gt;&lt;br&gt;To realise this for windows Seven and XP you need a Windows Server 2008 R2
&lt;br&gt;and MDT 2010.
&lt;br&gt;&lt;br&gt;Nevertheless, maybe this system isn't exactly what you are looking for,
&lt;br&gt;because the CD created by this tool is just a live CD allowing the
&lt;br&gt;connection to MDT server and dowloading OS, Software, Service Pack etc.
&lt;br&gt;&lt;br&gt;We have realised scenarios for Windows XP and Windows 7, and we install
&lt;br&gt;automatically Office, our Antivirus, TightVNC, Acrobat reader etc. with only
&lt;br&gt;two clic in about 40 minutes.
&lt;br&gt;&lt;br&gt;About compatibility with multiple computers, it's not a problem because even
&lt;br&gt;if the OS haven't drivers for your computer, you can add them manualy in MDT
&lt;br&gt;Server.
&lt;br&gt;&lt;br&gt;Finaly if you have 10 computers models (for exemple), you can generate image
&lt;br&gt;(.wim file) at the end of the process, and then update this image througt
&lt;br&gt;MDT. The advantage of updating is you haven't to reinstall completly a
&lt;br&gt;computer if you only have one security fix to add!
&lt;br&gt;&lt;br&gt;This tool is very powerfull, but need a lot of configuration to do this with
&lt;br&gt;only two or three mouse clic. If you don't care to clic on Next button
&lt;br&gt;during the installation phase, you can install MDT and create your basic
&lt;br&gt;scenario in 30 minutes and deploy it in 20 minutes.
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;Jérémie Bécousse
&lt;br&gt;&lt;br&gt;-----Message d'origine-----
&lt;br&gt;De : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26376866&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26376866&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] De
&lt;br&gt;la part de &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26376866&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;gremagehan@...&lt;/a&gt;
&lt;br&gt;Envoyé : mardi 10 novembre 2009 07:50
&lt;br&gt;À : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26376866&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Objet : How to prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26376866.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26377861</id>
	<title>Re: How to  prepare Windows Installation Discs</title>
	<published>2009-11-13T00:34:16Z</published>
	<updated>2009-11-13T00:34:16Z</updated>
	<author>
		<name>SDeVries</name>
	</author>
	<content type="html">Martin,
&lt;br&gt;&lt;br&gt;You can use slip streaming to create a standardized install cd or base image. You might be better of (depending on your setup) utilizing a (RIS install for windows xp or WDS for windows 7) with a wsus server for standardized updates.
&lt;br&gt;&lt;br&gt;As I said. Depending on your network setup. For this google is your friend.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;----- Original Message -----
&lt;br&gt;From: gremagehan
&lt;br&gt;Sent: 10/11/2009 05:49 PM
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377861&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: How to &amp;nbsp;prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;Important information
&lt;br&gt;This email is solely for the use of the addressee and may contain information which is confidential. 
&lt;br&gt;Any content within this email including attachments are subject to the terms and conditions of Shaw Stockbroking Limited's (ABN 24 003 221 583) 
&lt;br&gt;disclaimer as viewable at: &lt;a href=&quot;http://www.shawstock.com.au/emaildisclaimer.asp&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.shawstock.com.au/emaildisclaimer.asp&lt;/a&gt;. 
&lt;br&gt;If you are not the intended recipient please forward this email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377861&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;broking@...&lt;/a&gt; and delete the original.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26377861.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26377026</id>
	<title>RE: How to  prepare Windows Installation Discs</title>
	<published>2009-11-12T23:58:53Z</published>
	<updated>2009-11-12T23:58:53Z</updated>
	<author>
		<name>Marc Serra-5</name>
	</author>
	<content type="html">You can try Nlite (&lt;a href=&quot;http://www.nliteos.com/download.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.nliteos.com/download.html&lt;/a&gt;)
&lt;br&gt;&lt;br&gt;Work's great for me!
&lt;br&gt;&lt;br&gt;From &lt;a href=&quot;http://www.nliteos.com/nlite.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.nliteos.com/nlite.html&lt;/a&gt;...
&lt;br&gt;&lt;br&gt;&amp;quot;Features
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; * Service Pack Integration
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Component Removal
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Unattended Setup
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Driver Integration *
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Hotfixes Integration **
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Tweaks
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Services Configuration
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Patches ***
&lt;br&gt;&amp;nbsp; &amp;nbsp; * Bootable ISO creation&amp;quot;
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;quot;nLite supports Windows 2000, XP x86/x64 and 2003 x86/x64 in all
&lt;br&gt;languages.
&lt;br&gt;It needs .NET Framework 2.0 in order to run&amp;quot;
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Mensaje original-----
&lt;br&gt;De: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377026&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377026&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;]
&lt;br&gt;En nombre de &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377026&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;gremagehan@...&lt;/a&gt;
&lt;br&gt;Enviado el: dimarts, 10 / novembre / 2009 07:50
&lt;br&gt;Para: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377026&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Asunto: How to prepare Windows Installation Discs
&lt;br&gt;&lt;br&gt;Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement
&lt;br&gt;systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;&lt;br&gt;Marc Serra - OiS
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26377026&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;mserra@...&lt;/a&gt;
&lt;br&gt;&amp;lt;img&amp;gt;
&lt;br&gt;Manxa 1901 S.L.
&lt;br&gt;Ctra. Les Tries 85
&lt;br&gt;17800 Olot (Girona)
&lt;br&gt;Telf: +34 972 27 64 99
&lt;br&gt;www.manxa.es
&lt;br&gt;&lt;br&gt;Avis legal
&lt;br&gt;El contingut d'aquest correu electronic i els seus annexos es estrictament confidencial. En el cas que voste no sigui el destinatari i hagi rebut aquest missatge per error, preguem ho comuniqui al remitent i procedeixi a la seva eliminacio, sense difondre, emmagatzemar o copiar el seu contingut.
&lt;br&gt;&lt;br&gt;Aviso legal
&lt;br&gt;El contenido de este correo electronico y sus anexos es estrictamente confidencial. En el caso de que usted no sea el destinatario y haya recibido este mensaje por error, rogamos lo comunique al remitente y proceda a su eliminacion, sin difundir, almacenar o copiar su contenido.
&lt;br&gt;&lt;br&gt;Important notice
&lt;br&gt;The information contained in this e-mail is strictly confidential and is intended to be viewed and used only by the above-named recipient. If you are not the above-named intended recipient and have received this message by mistake, you are hereby notified that any dissemination, distribution or copying of this communication and its content is strictly prohibited. If you have received this communication by mistake, please re-send it to the sender and delete the original message or any copy of it from your computer system.
&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26377026.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26332194</id>
	<title>How to  prepare Windows Installation Discs</title>
	<published>2009-11-09T22:49:46Z</published>
	<updated>2009-11-09T22:49:46Z</updated>
	<author>
		<name>gremagehan</name>
	</author>
	<content type="html">Hello List,
&lt;br&gt;&lt;br&gt;I'm looking for some Informations about preparing the Windows
&lt;br&gt;Installation &amp;nbsp;CD's (XP Pro).
&lt;br&gt;It should be possible to prepare an installation disc with Windows
&lt;br&gt;including all Service packs.
&lt;br&gt;How to do that? It is possible to prepare installation CD for more than
&lt;br&gt;one &amp;nbsp;machine?
&lt;br&gt;And what about the Windows 7?
&lt;br&gt;We prepare every week &amp;nbsp;up to 20 &amp;nbsp;PC's as a part of our measurement systems.
&lt;br&gt;Therefore it &amp;nbsp;is not our main topic, but I thing it is better to install
&lt;br&gt;OS with all the updates
&lt;br&gt;than make online update with every box.
&lt;br&gt;&lt;br&gt;Thank you for your answers
&lt;br&gt;&lt;br&gt;Have a nice day
&lt;br&gt;Martin
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to--prepare-Windows-Installation-Discs-tp26332194p26332194.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26182766</id>
	<title>SecurityFocus Microsoft Newsletter #453</title>
	<published>2009-11-03T08:51:39Z</published>
	<updated>2009-11-03T08:51:39Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #453
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by Entrust
&lt;br&gt;&lt;br&gt;Entrust SSL Certificates - UCC certificates
&lt;br&gt;Secure MS Exchange '07 - up to 10 host names included
&lt;br&gt;Now from only $387/year
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.entrust.net/securityfocus-ucc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.entrust.net/securityfocus-ucc&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Time to Squish SQL Injection
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Lazy Workers May Be Deemed Hackers
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. F-Secure Products PDF Files Scan Evasion Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. McAfee Products TAR and PDF Files Scan Evasion Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Wireshark 1.2.2 and 1.0.9 Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Multiple Rising Products Insecure Program File Permissions Local Privilege Escalation
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Microsoft SharePoint Team Services Download Feature Source Code Information Disclosure
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Cherokee Web Server Malformed Packet Remote Denial of Service Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. Time to Squish SQL Injection
&lt;br&gt;by Gunter Ollmann
&lt;br&gt;Heartland Payment Systems and Hannaford Bros. both fell prey to botnets wielding SQL injection
&lt;br&gt;flaws. Corporate IT managers need to place a priority on fixing Web site vulnerabilities, argues
&lt;br&gt;Gunter Ollmann, vice president of research for Damballa.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/505&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/505&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. Lazy Workers May Be Deemed Hackers
&lt;br&gt;By Mark Rasch
&lt;br&gt;&amp;gt;From his office job at the Shelby City (Ohio) Wastewater Treatment plant, he was browsing adult Web sites, including one called Adult Friend Finder to meet women. When some of the women asked Wolf for nude pictures, he bought a digital camera, took pictures, and e-mailed them using his work computer.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/504&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/504&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. F-Secure Products PDF Files Scan Evasion Vulnerability
&lt;br&gt;BugTraq ID: 36876
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-10-27
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36876&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36876&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple F-Secure products are prone to a vulnerability that may allow certain files to bypass the
&lt;br&gt;scan engine.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to distribute files containing malicious code that the
&lt;br&gt;antivirus application on a gateway device will fail to detect.
&lt;br&gt;&lt;br&gt;2. McAfee Products TAR and PDF Files Scan Evasion Vulnerabilities
&lt;br&gt;BugTraq ID: 36848
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-10-27
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36848&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36848&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple McAfee products are prone to vulnerabilities that may allow certain files to bypass the
&lt;br&gt;scan engine.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to distribute files containing malicious code that the
&lt;br&gt;antivirus application on a gateway device will fail to detect.
&lt;br&gt;&lt;br&gt;3. Wireshark 1.2.2 and 1.0.9 Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 36846
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-10-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36846&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36846&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Wireshark is prone to multiple denial-of-service vulnerabilities.
&lt;br&gt;&lt;br&gt;Exploiting these issues may allow attackers to crash the application and deny service to legitimate
&lt;br&gt;users.
&lt;br&gt;&lt;br&gt;These issues affect the following:
&lt;br&gt;&lt;br&gt;Wireshark 1.2.2 and earlier
&lt;br&gt;Wireshark 1.0.9 and earlier
&lt;br&gt;&lt;br&gt;4. Multiple Rising Products Insecure Program File Permissions Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 36836
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-10-27
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36836&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36836&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple Rising products are prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges,
&lt;br&gt;resulting in a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;The following Rising products are affected:
&lt;br&gt;&lt;br&gt;Antivirus 2009
&lt;br&gt;Internet Security 2009
&lt;br&gt;Personal Firewall 2009
&lt;br&gt;&lt;br&gt;5. Microsoft SharePoint Team Services Download Feature Source Code Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 36817
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-10-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36817&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36817&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft SharePoint is prone to a vulnerability that lets attackers access certain files that
&lt;br&gt;contain source code.
&lt;br&gt;&lt;br&gt;An attacker can exploit this vulnerability to retrieve certain files from the vulnerable computer in
&lt;br&gt;the context of the webserver process. Information obtained may aid in further attacks.
&lt;br&gt;&lt;br&gt;SharePoint 2007 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;6. Cherokee Web Server Malformed Packet Remote Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 36814
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-10-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36814&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36814&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Cherokee Web Server is prone to a remote denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue to crash the affected application, denying service to
&lt;br&gt;legitimate users.
&lt;br&gt;&lt;br&gt;Cherokee Web Server 0.5.4 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26182766&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26182766&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by Entrust
&lt;br&gt;&lt;br&gt;Entrust SSL Certificates - UCC certificates
&lt;br&gt;Secure MS Exchange '07 - up to 10 host names included
&lt;br&gt;Now from only $387/year
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.entrust.net/securityfocus-ucc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.entrust.net/securityfocus-ucc&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--453-tp26182766p26182766.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25616482</id>
	<title>SecurityFocus Microsoft Newsletter #452</title>
	<published>2009-09-25T10:32:26Z</published>
	<updated>2009-09-25T10:32:26Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #452
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by Entrust
&lt;br&gt;&lt;br&gt;Entrust SSL Certificates - UCC certificates
&lt;br&gt;Secure MS Exchange '07 - up to 10 host names included
&lt;br&gt;Now from only $387/year
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.entrust.net/securityfocus-ucc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.entrust.net/securityfocus-ucc&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1.Lazy Workers May Be Deemed Hackers
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.The Scale of Security
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Code-Crafters Ability Mail Server IMAP FETCH Request Remote Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Apple iTunes '.pls' File Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Snort Unified1 Output Remote Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. HP ProCurve Identity Driven Manager (IDM) Unspecified Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Adobe Shockwave Player ActiveX Control 'PlayerVersion' Property Remote Buffer Overflow
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Notepad++ 'C' and 'CPP' File Handling Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Wireshark 1.2.1 Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. BRS WebWeaver 'Scripts' Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. FileCOPA FTP Server 'NOOP' Command Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Proland Protector Plus Insecure Program File Permissions Local Privilege Escalation
&lt;br&gt;Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1.Lazy Workers May Be Deemed Hackers
&lt;br&gt;By Mark Rasch
&lt;br&gt;&amp;gt;From his office job at the Shelby City (Ohio) Wastewater Treatment plant, he was browsing adult Web sites, including one called Adult Friend Finder to meet women. When some of the women asked Wolf for nude pictures, he bought a digital camera, took pictures, and e-mailed them using his work computer.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/504&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/504&lt;/a&gt;&lt;br&gt;&lt;br&gt;2.The Scale of Security
&lt;br&gt;By Adam O'Donnell
&lt;br&gt;Human beings do not naturally understand scale. While we speak of financial transactions in the
&lt;br&gt;hundreds of billions of dollars as being something as routine as brushing our teeth, we question the
&lt;br&gt;value of programs that cost in the single-digit millions and quibble with friends over dollars.
&lt;br&gt;Similarly, there are many problems in our industry that, when explained to an outsider, sound like
&lt;br&gt;they should have been solved decades ago. It is only when we relate the number of systems that need
&lt;br&gt;to be considered in the repair that we truly communicate the difficulty of the problem.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/503&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/503&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Code-Crafters Ability Mail Server IMAP FETCH Request Remote Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 36519
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-25
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36519&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36519&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Ability Mail Server is prone to a denial-of-service vulnerability because it fails to adequately
&lt;br&gt;handle IMAP requests.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to cause the affected application to crash, denying service to
&lt;br&gt;legitimate users.
&lt;br&gt;&lt;br&gt;&amp;nbsp;Versions prior to Ability Mail Server 2.70 are affected.
&lt;br&gt;&lt;br&gt;2. Apple iTunes '.pls' File Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 36478
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-22
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36478&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36478&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple iTunes is prone to a buffer-overflow &amp;nbsp;vulnerability because the software fails to bounds-check
&lt;br&gt;user-supplied data before copying it into an insufficiently sized buffer.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the affected
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;Versions prior to Apple iTunes 9.0.1 are vulnerable.
&lt;br&gt;&lt;br&gt;3. Snort Unified1 Output Remote Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 36473
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-21
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36473&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36473&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Snort is affected by a denial-of-service vulnerability because the application fails to properly
&lt;br&gt;process unified1 output.
&lt;br&gt;&lt;br&gt;Attackers can leverage this issue by sending malformed network packets that will produce corrupted
&lt;br&gt;logs and alerts, causing denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Snort 2.8.1 through 2.8.4 are affected.
&lt;br&gt;&lt;br&gt;4. HP ProCurve Identity Driven Manager (IDM) Unspecified Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 36462
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-09-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36462&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36462&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;HP ProCurve Identity Driven Manager (IDM) is prone to an unspecified privilege-escalation scripting
&lt;br&gt;vulnerability.
&lt;br&gt;&lt;br&gt;&amp;nbsp;Few technical details are available at this time; we will update this BID as more information emerges.
&lt;br&gt;&lt;br&gt;HP ProCurve Identity Driven Manager (IDM) A.02.03 and A.03.00 running on Microsoft Windows 2003 with
&lt;br&gt;Internet Authentication Service (IAS) or Microsoft Windows 2008 with Network Policy Server (NPS) are
&lt;br&gt;vulnerable.
&lt;br&gt;&lt;br&gt;5. Adobe Shockwave Player ActiveX Control 'PlayerVersion' Property Remote Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 36434
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-16
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36434&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36434&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Adobe Shockwave Player ActiveX control is prone to a remote buffer-overflow vulnerability because
&lt;br&gt;the application fails to perform adequate boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;Successful exploits allow remote attackers to execute arbitrary code in the context of the
&lt;br&gt;application using the ActiveX control (typically Internet Explorer). Failed exploit attempts likely
&lt;br&gt;result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Shockwave Player 11.5.1.601 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;6. Notepad++ 'C' and 'CPP' File Handling Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 36426
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-16
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36426&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36426&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Notepad++ is prone to a stack-based buffer-overflow vulnerability because it fails to perform
&lt;br&gt;adequate boundary checks on user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers may leverage this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed attacks will cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Notepad++ 5.4.5 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;7. Wireshark 1.2.1 Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 36408
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36408&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36408&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Wireshark is prone to multiple denial-of-service vulnerabilities.
&lt;br&gt;&lt;br&gt;Exploiting these issues may allow attackers to crash the application and deny service to legitimate
&lt;br&gt;users.
&lt;br&gt;&lt;br&gt;These issues affect Wireshark 0.99.6 through 1.2.1.
&lt;br&gt;&lt;br&gt;8. BRS WebWeaver 'Scripts' Security Bypass Vulnerability
&lt;br&gt;BugTraq ID: 36399
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36399&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36399&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;BRS WebWeaver is prone to a security-bypass vulnerability because it fails to properly validate
&lt;br&gt;user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to access scripts or perform actions without proper authorization.
&lt;br&gt;&lt;br&gt;&amp;nbsp;BRS WebWeaver 1.33 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;9. FileCOPA FTP Server 'NOOP' Command Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 36397
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-09-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36397&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36397&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;FileCOPA FTP Server is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;A successful exploit may allow attackers to halt the server process, resulting in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;FileCOPA FTP Server 5.01 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;10. Proland Protector Plus Insecure Program File Permissions Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 36396
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-09-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36396&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36396&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Proland Protector Plus is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges,
&lt;br&gt;resulting in a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;The following versions are affected:
&lt;br&gt;&lt;br&gt;Protector Plus 2009 8.0.E03 for Windows Desktops
&lt;br&gt;Protector Plus 2009 &amp;nbsp;8.0.E03 for Windows Server
&lt;br&gt;Protector Plus Professional 9.1.001
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25616482&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25616482&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by Entrust
&lt;br&gt;&lt;br&gt;Entrust SSL Certificates - UCC certificates
&lt;br&gt;Secure MS Exchange '07 - up to 10 host names included
&lt;br&gt;Now from only $387/year
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.entrust.net/securityfocus-ucc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.entrust.net/securityfocus-ucc&lt;/a&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--452-tp25616482p25616482.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25340479</id>
	<title>RE: Vista Complete PC Backup coolness</title>
	<published>2009-09-04T23:50:53Z</published>
	<updated>2009-09-04T23:50:53Z</updated>
	<author>
		<name>Ken Schaefer</name>
	</author>
	<content type="html">The 100MB partition is for Bitlocker. I am surprised that this isn't backed up normally/transparently as part of a backup that includes system state...
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;Ken
&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On Behalf Of James D. Stallard
&lt;br&gt;Sent: Thursday, 3 September 2009 6:50 AM
&lt;br&gt;To: 'Thor (Hammer of God)'; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: RE: Vista Complete PC Backup coolness
&lt;br&gt;&lt;br&gt;Hey Thor
&lt;br&gt;&lt;br&gt;There's no real reason why a VHD backup should not be mountable as a VM, after all, we all do P2V. Indeed, an automated P2V is an excellent way of creating a warm-standby DR environment or a &amp;quot;real&amp;quot; live test bed. Mounting a VHD as a VM would seem to be a common sense feature to me - especially as it also raises the possibility of V2P. MS have missed a trick IMHO.
&lt;br&gt;&lt;br&gt;Also, we have another backup nasty on Windows 7 that also hits Windows Server 2008 R2.
&lt;br&gt;&lt;br&gt;On default installations, both OSs create a 100Mb partition on the boot drive, presumably for recovery (not bothered doing the reading on that yet).
&lt;br&gt;It would seem that taking backups of the system state requires a VSS snapshot to be created for that drive, and the drive is too small for VSS to be happy about doing it. The result, some commercial backup software (my test was BackupExec 12.5 SP2 fully patched) fails. You can do some VSSADMIN jiggery-pokery to move the snapshot to another drive, but that requires a drive letter to be assigned to the 100Mb partition and is a messy solution at best.
&lt;br&gt;&lt;br&gt;Using DISKPART to setup your own partitions during installation (either OS) does not create the 100Mb partition and so doesn't create the problem.
&lt;br&gt;&lt;br&gt;Kinda wandered of topic a bit, but I hope it's useful
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;&lt;br&gt;James
&lt;br&gt;&lt;br&gt;James D. Stallard MBCS CITP MIoD
&lt;br&gt;Enterprise Architect
&lt;br&gt;Web: www.leafgrove.com
&lt;br&gt;LinkedIn: www.linkedin.com/in/jamesdstallard
&lt;br&gt;Email: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;james@...&lt;/a&gt;
&lt;br&gt;Mobile: +44 (0) 7979 49 8880
&lt;br&gt;Skype: JamesDStallard
&lt;br&gt;&lt;br&gt;Think before you print. Please don't print this email unless you really need to.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On Behalf Of Thor (Hammer of God)
&lt;br&gt;Sent: 28 August 2009 20:49
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: Vista Complete PC Backup coolness
&lt;br&gt;&lt;br&gt;So, before I upgraded to Win7 on my production rig, I took the opportunity to try out the &amp;quot;Full PC Backup&amp;quot; for giggles just in case things went tits up. &amp;nbsp;Aside from the restore not working (it said it had a disk problem) and the fact that you can only restore to a partition the same size as the one you backed up from (it's supposed to be =&amp;gt;, but it didn't work out that way), I did find out some cool things about the Complete backup that you might find interesting...
&lt;br&gt;&lt;br&gt;First off, while you have to be admin to perform a Complete PC Backup, you no longer get the option of requiring a password to &amp;quot;protect&amp;quot; the backup.
&lt;br&gt;That was cool when you were concerned with people with physical access getting to your data. &amp;nbsp;The directory created (based on HOSTNAME of unit backed up) will have local Administrators group Full, and local Backup Operators Full, but all you have to do (obviously) is pop the usb drive into a different machine that you have local admin access to and you immediately get full access. &amp;nbsp;You don't even have to change permissions... I don't consider that a big deal, and is actually easier, since if you are admin on the box, it doesn't matter what drives you put in from an OS permissions standpoint (not EFS, obviously). &amp;nbsp;
&lt;br&gt;&lt;br&gt;The &amp;quot;cool&amp;quot; part is that the Complete PC Backup is actually a .VHD disk file.
&lt;br&gt;Sure, there is catalog information accompanying the backup, but if you need data off of the backup, you can just stick the USB source in a drive somewhere and mount the VHD to access it like a drive letter, again without worrying about file permissions. &amp;nbsp;You can do this in VPC or VMWare, or even easier, use something like WinImage to just mount the thing and grab your data. &amp;nbsp;/mosh
&lt;br&gt;&lt;br&gt;It would have been very cool for MSFT to have built in the functionality of actually BOOTING the vhd in VPC (or VMWare) but alas, that dog does not hunt. &amp;nbsp;While not ideal, it would require substantial driver reloading (and
&lt;br&gt;reactivation) anyway, but it still would be nice to be able to boot into your Complete Backup. &amp;nbsp;Just as well that you can just attach the .vhd directly in VMWare/VPC and go from there though.
&lt;br&gt;&lt;br&gt;That's it.. just thought I'd post up the bits about not expecting any security on your backups, and how you can now just directly mount the vhd backup file to get data without worrying about permissions. &amp;nbsp;I'm sure some with think that is a bad thing, but I've always treated backups like any other &amp;quot;physical access&amp;quot; asset, which is, if I have my hands on it, it's mine anyway (so encrypt, etc). &amp;nbsp;
&lt;br&gt;&lt;br&gt;Have a good one!
&lt;br&gt;&lt;br&gt;T
&lt;br&gt;&lt;br&gt;____________________
&lt;br&gt;Timothy (Thor) Mullen, Ph.D.
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25340479&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25340479.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25267062</id>
	<title>RE: Vista Complete PC Backup coolness</title>
	<published>2009-09-02T15:50:14Z</published>
	<updated>2009-09-02T15:50:14Z</updated>
	<author>
		<name>James D. Stallard</name>
	</author>
	<content type="html">Hey Thor
&lt;br&gt;&lt;br&gt;There's no real reason why a VHD backup should not be mountable as a VM,
&lt;br&gt;after all, we all do P2V. Indeed, an automated P2V is an excellent way of
&lt;br&gt;creating a warm-standby DR environment or a &amp;quot;real&amp;quot; live test bed. Mounting a
&lt;br&gt;VHD as a VM would seem to be a common sense feature to me - especially as it
&lt;br&gt;also raises the possibility of V2P. MS have missed a trick IMHO.
&lt;br&gt;&lt;br&gt;Also, we have another backup nasty on Windows 7 that also hits Windows
&lt;br&gt;Server 2008 R2.
&lt;br&gt;&lt;br&gt;On default installations, both OSs create a 100Mb partition on the boot
&lt;br&gt;drive, presumably for recovery (not bothered doing the reading on that yet).
&lt;br&gt;It would seem that taking backups of the system state requires a VSS
&lt;br&gt;snapshot to be created for that drive, and the drive is too small for VSS to
&lt;br&gt;be happy about doing it. The result, some commercial backup software (my
&lt;br&gt;test was BackupExec 12.5 SP2 fully patched) fails. You can do some VSSADMIN
&lt;br&gt;jiggery-pokery to move the snapshot to another drive, but that requires a
&lt;br&gt;drive letter to be assigned to the 100Mb partition and is a messy solution
&lt;br&gt;at best.
&lt;br&gt;&lt;br&gt;Using DISKPART to setup your own partitions during installation (either OS)
&lt;br&gt;does not create the 100Mb partition and so doesn't create the problem.
&lt;br&gt;&lt;br&gt;Kinda wandered of topic a bit, but I hope it's useful
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;&lt;br&gt;James
&lt;br&gt;&lt;br&gt;James D. Stallard MBCS CITP MIoD
&lt;br&gt;Enterprise Architect
&lt;br&gt;Web: www.leafgrove.com
&lt;br&gt;LinkedIn: www.linkedin.com/in/jamesdstallard
&lt;br&gt;Email: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25267062&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;james@...&lt;/a&gt;
&lt;br&gt;Mobile: +44 (0) 7979 49 8880
&lt;br&gt;Skype: JamesDStallard
&lt;br&gt;&lt;br&gt;Think before you print. Please don't print this email unless you really need
&lt;br&gt;to.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25267062&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25267062&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;Behalf Of Thor (Hammer of God)
&lt;br&gt;Sent: 28 August 2009 20:49
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25267062&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: Vista Complete PC Backup coolness
&lt;br&gt;&lt;br&gt;So, before I upgraded to Win7 on my production rig, I took the opportunity
&lt;br&gt;to try out the &amp;quot;Full PC Backup&amp;quot; for giggles just in case things went tits
&lt;br&gt;up. &amp;nbsp;Aside from the restore not working (it said it had a disk problem) and
&lt;br&gt;the fact that you can only restore to a partition the same size as the one
&lt;br&gt;you backed up from (it's supposed to be =&amp;gt;, but it didn't work out that
&lt;br&gt;way), I did find out some cool things about the Complete backup that you
&lt;br&gt;might find interesting...
&lt;br&gt;&lt;br&gt;First off, while you have to be admin to perform a Complete PC Backup, you
&lt;br&gt;no longer get the option of requiring a password to &amp;quot;protect&amp;quot; the backup.
&lt;br&gt;That was cool when you were concerned with people with physical access
&lt;br&gt;getting to your data. &amp;nbsp;The directory created (based on HOSTNAME of unit
&lt;br&gt;backed up) will have local Administrators group Full, and local Backup
&lt;br&gt;Operators Full, but all you have to do (obviously) is pop the usb drive into
&lt;br&gt;a different machine that you have local admin access to and you immediately
&lt;br&gt;get full access. &amp;nbsp;You don't even have to change permissions... I don't
&lt;br&gt;consider that a big deal, and is actually easier, since if you are admin on
&lt;br&gt;the box, it doesn't matter what drives you put in from an OS permissions
&lt;br&gt;standpoint (not EFS, obviously). &amp;nbsp;
&lt;br&gt;&lt;br&gt;The &amp;quot;cool&amp;quot; part is that the Complete PC Backup is actually a .VHD disk file.
&lt;br&gt;Sure, there is catalog information accompanying the backup, but if you need
&lt;br&gt;data off of the backup, you can just stick the USB source in a drive
&lt;br&gt;somewhere and mount the VHD to access it like a drive letter, again without
&lt;br&gt;worrying about file permissions. &amp;nbsp;You can do this in VPC or VMWare, or even
&lt;br&gt;easier, use something like WinImage to just mount the thing and grab your
&lt;br&gt;data. &amp;nbsp;/mosh
&lt;br&gt;&lt;br&gt;It would have been very cool for MSFT to have built in the functionality of
&lt;br&gt;actually BOOTING the vhd in VPC (or VMWare) but alas, that dog does not
&lt;br&gt;hunt. &amp;nbsp;While not ideal, it would require substantial driver reloading (and
&lt;br&gt;reactivation) anyway, but it still would be nice to be able to boot into
&lt;br&gt;your Complete Backup. &amp;nbsp;Just as well that you can just attach the .vhd
&lt;br&gt;directly in VMWare/VPC and go from there though.
&lt;br&gt;&lt;br&gt;That's it.. just thought I'd post up the bits about not expecting any
&lt;br&gt;security on your backups, and how you can now just directly mount the vhd
&lt;br&gt;backup file to get data without worrying about permissions. &amp;nbsp;I'm sure some
&lt;br&gt;with think that is a bad thing, but I've always treated backups like any
&lt;br&gt;other &amp;quot;physical access&amp;quot; asset, which is, if I have my hands on it, it's mine
&lt;br&gt;anyway (so encrypt, etc). &amp;nbsp;
&lt;br&gt;&lt;br&gt;Have a good one!
&lt;br&gt;&lt;br&gt;T
&lt;br&gt;&lt;br&gt;____________________
&lt;br&gt;Timothy (Thor) Mullen, Ph.D.
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25267062&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25267062.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25264247</id>
	<title>Vista Complete PC Backup coolness</title>
	<published>2009-08-28T12:49:22Z</published>
	<updated>2009-08-28T12:49:22Z</updated>
	<author>
		<name>Thor (Hammer of God)</name>
	</author>
	<content type="html">So, before I upgraded to Win7 on my production rig, I took the opportunity to try out the &amp;quot;Full PC Backup&amp;quot; for giggles just in case things went tits up. &amp;nbsp;Aside from the restore not working (it said it had a disk problem) and the fact that you can only restore to a partition the same size as the one you backed up from (it's supposed to be =&amp;gt;, but it didn't work out that way), I did find out some cool things about the Complete backup that you might find interesting...
&lt;br&gt;&lt;br&gt;First off, while you have to be admin to perform a Complete PC Backup, you no longer get the option of requiring a password to &amp;quot;protect&amp;quot; the backup. &amp;nbsp;That was cool when you were concerned with people with physical access getting to your data. &amp;nbsp;The directory created (based on HOSTNAME of unit backed up) will have local Administrators group Full, and local Backup Operators Full, but all you have to do (obviously) is pop the usb drive into a different machine that you have local admin access to and you immediately get full access. &amp;nbsp;You don't even have to change permissions... I don't consider that a big deal, and is actually easier, since if you are admin on the box, it doesn't matter what drives you put in from an OS permissions standpoint (not EFS, obviously). &amp;nbsp;
&lt;br&gt;&lt;br&gt;The &amp;quot;cool&amp;quot; part is that the Complete PC Backup is actually a .VHD disk file. &amp;nbsp;Sure, there is catalog information accompanying the backup, but if you need data off of the backup, you can just stick the USB source in a drive somewhere and mount the VHD to access it like a drive letter, again without worrying about file permissions. &amp;nbsp;You can do this in VPC or VMWare, or even easier, use something like WinImage to just mount the thing and grab your data. &amp;nbsp;/mosh
&lt;br&gt;&lt;br&gt;It would have been very cool for MSFT to have built in the functionality of actually BOOTING the vhd in VPC (or VMWare) but alas, that dog does not hunt. &amp;nbsp;While not ideal, it would require substantial driver reloading (and reactivation) anyway, but it still would be nice to be able to boot into your Complete Backup. &amp;nbsp;Just as well that you can just attach the .vhd directly in VMWare/VPC and go from there though.
&lt;br&gt;&lt;br&gt;That's it.. just thought I'd post up the bits about not expecting any security on your backups, and how you can now just directly mount the vhd backup file to get data without worrying about permissions. &amp;nbsp;I'm sure some with think that is a bad thing, but I've always treated backups like any other &amp;quot;physical access&amp;quot; asset, which is, if I have my hands on it, it's mine anyway (so encrypt, etc). &amp;nbsp;
&lt;br&gt;&lt;br&gt;Have a good one!
&lt;br&gt;&lt;br&gt;T
&lt;br&gt;&lt;br&gt;____________________
&lt;br&gt;Timothy (Thor) Mullen, Ph.D.
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25264247&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25264247.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25162440</id>
	<title>Re: How to /password policy on Windows 2003</title>
	<published>2009-08-26T15:00:55Z</published>
	<updated>2009-08-26T15:00:55Z</updated>
	<author>
		<name>Ben Scott-4</name>
	</author>
	<content type="html">On Wed, Aug 26, 2009 at 12:47 AM, Kevin &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25162440&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;rot_betruger@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt; Say you have an expiry of 60 days, and the previous 6 blocked
&lt;br&gt;&amp;gt; through AD, so thats 360 months before the &amp;quot;first&amp;quot;
&lt;br&gt;&amp;gt; password can be used again, right? Nah, change your password
&lt;br&gt;&amp;gt; 7 times through a windows client and they are back to using their
&lt;br&gt;&amp;gt; first password in 5 minutes.
&lt;br&gt;&lt;br&gt;&amp;nbsp; FWIW, that much can be countered using the &amp;quot;Minimum password age&amp;quot;
&lt;br&gt;policy. &amp;nbsp;Even setting it to 1 day (the smallest possible) will usually
&lt;br&gt;do the trick.
&lt;br&gt;&lt;br&gt;-- Ben
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25162440.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25162737</id>
	<title>RE: How to /password policy on Windows 2003</title>
	<published>2009-08-26T10:21:48Z</published>
	<updated>2009-08-26T10:21:48Z</updated>
	<author>
		<name>Kurt Dillard-3</name>
	</author>
	<content type="html">I've watched all of the replies flash by, I'm not sure any of them answered
&lt;br&gt;the original question. Are you simply looking for directions on where to
&lt;br&gt;configure the settings? 
&lt;br&gt;&lt;br&gt;Is this Windows box part of an Active Directory domain, if it is use group
&lt;br&gt;policy. If not, use the local security policy. Start &amp;gt; All Programs &amp;gt;
&lt;br&gt;Administrative Tools &amp;gt; Local Security Policy. The precise path will vary
&lt;br&gt;depend on your version of windows and how you've configured your Start Menu.
&lt;br&gt;Once the tool is open expand Account Policies then click on Password Policy.
&lt;br&gt;You can configure 6 password policies there. The next folder down contains
&lt;br&gt;the 3 account lockout policies. 
&lt;br&gt;&lt;br&gt;Or are you looking for advice on what values to assign to these settings? If
&lt;br&gt;this is the case you already got some good advice, I would recommend
&lt;br&gt;Microsoft's own guidance for Windows Server 2003:
&lt;br&gt;&lt;a href=&quot;http://go.microsoft.com/fwlink/?LinkId=14845&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://go.microsoft.com/fwlink/?LinkId=14845&lt;/a&gt;, follow the guidelines for the
&lt;br&gt;Enterprise Client (EC) scenario. Of course, I'm biased, I wrote most of that
&lt;br&gt;doc :P
&lt;br&gt;&lt;br&gt;A note on OU-specific password policies: that is a new feature in Windows
&lt;br&gt;Server 2008, I don't think the version of the clients matter, only the
&lt;br&gt;domain controllers:
&lt;br&gt;&lt;a href=&quot;http://technet.microsoft.com/en-us/library/cc770394(WS.10).aspx&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://technet.microsoft.com/en-us/library/cc770394(WS.10).aspx&lt;/a&gt;. 
&lt;br&gt;&lt;br&gt;Regards,
&lt;br&gt;&lt;br&gt;Kurt Dillard
&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25162737&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25162737&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;Behalf Of pent 5971
&lt;br&gt;Sent: Friday, August 21, 2009 9:14 AM
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25162737&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: Re: How to /password policy on Windows 2003
&lt;br&gt;&lt;br&gt;Any ideas/best practices?
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25162737&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25162737.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25155939</id>
	<title>Re: How to /password policy on Windows 2003</title>
	<published>2009-08-25T21:47:45Z</published>
	<updated>2009-08-25T21:47:45Z</updated>
	<author>
		<name>Kevin-128</name>
	</author>
	<content type="html">All good points, however how this policy is enforced is problematic.
&lt;br&gt;See there are only so many policy's you can place on a 2k3 domain.
&lt;br&gt;Complex or not, must have 3 of the 4, upper lower, special, number and 
&lt;br&gt;it can't be the username.
&lt;br&gt;Minimum Length, no less than X char long
&lt;br&gt;Expiry, expires in X days
&lt;br&gt;Previous Number, cannot be previous X number of passwords used
&lt;br&gt;&lt;br&gt;At my work we actually bought a piece of software called Hitachi ID 
&lt;br&gt;Password Manager, (formerly MTek P-Synch), we bought it for the 
&lt;br&gt;self-help password reset portion so users quit calling the helpdesk.
&lt;br&gt;Once this is in place and the pushpass agent is installed on all domain 
&lt;br&gt;controllers it can control what passwords are accepted by the domain 
&lt;br&gt;controllers.
&lt;br&gt;This has one drawback (other than money), this applies to ALL domain 
&lt;br&gt;passwords, much like the standard windows 2k3 password policy.
&lt;br&gt;The upside is you have nearly unlimited control over what kind of 
&lt;br&gt;passwords are accepted on your domain, dictionary words, it'll block em, 
&lt;br&gt;username reversed, it'll block it. got some sneaky sysadmins using 
&lt;br&gt;server names as passwords, use a regular expression to block certain 
&lt;br&gt;password patterns, i.e. think they are using server names as passwords 
&lt;br&gt;(srv_MyServ1) use a regex to block anything with .srv. in it. Another 
&lt;br&gt;thing that I thought was helpful was that you can set a password age. 
&lt;br&gt;Say you have an expiry of 60 days, and the previous 6 blocked through 
&lt;br&gt;AD, so thats 360 months before the &amp;quot;first&amp;quot; password can be used again, 
&lt;br&gt;right? Nah, change your password 7 times through a windows client and 
&lt;br&gt;they are back to using their first password in 5 minutes. With the 
&lt;br&gt;password age you can say, 360 months, and they literally are blocked 
&lt;br&gt;from ever using that password again for 360 months.
&lt;br&gt;The pushpass service checks against the hitachi server and will block 
&lt;br&gt;you if the password does not meet the set criteria.
&lt;br&gt;&lt;br&gt;I'm in no way advocating buying this software, it's just what we use and 
&lt;br&gt;what I have experience with, and to show you that there are products out 
&lt;br&gt;there (if anyone knows of an opensource product that does this, lemme 
&lt;br&gt;us) that can extend the bland password policies that are available in a 
&lt;br&gt;2k3 domain.
&lt;br&gt;&lt;br&gt;I'm not entirely positive, but I have &amp;quot;heard&amp;quot; that with a 2k8 domain and 
&lt;br&gt;vista/7 clients, you can set password policy at the OU level, with 
&lt;br&gt;anything prior, if it's set it cannot be overwritten by a sub policy or 
&lt;br&gt;by blocking the GPO applying the policy, it's a policy set at the domain 
&lt;br&gt;controller level, so if they get it, they abide by it, not the clients 
&lt;br&gt;attached to them.
&lt;br&gt;&lt;br&gt;And the thing with management, about being higher than director, thats 
&lt;br&gt;where the policy should be enforced from, not come from. It needs to 
&lt;br&gt;come from the security team who then send it up the line to be approved. 
&lt;br&gt;Management 1 step above a sysadmin or security analyst managers position 
&lt;br&gt;is not going to have any idea what it means to have a password policy 
&lt;br&gt;with X criteria, let alone director or above.
&lt;br&gt;Also, with the &amp;quot;All passwords need to be complex (INSERT definition..)&amp;quot;, 
&lt;br&gt;that's great to have on paper, but there is no way to enforce it unless 
&lt;br&gt;you rounded up every employee and asked them for their password, and 
&lt;br&gt;that won't happen. With Microsoft and 2k3 you get complex, yes or no, it 
&lt;br&gt;can't be defined, see above.
&lt;br&gt;&lt;br&gt;Rivest, Philippe wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Well first off, I would sadly say it depends a lot on your company and how
&lt;br&gt;&amp;gt; they view security, which requirements you have (legals and business).
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Let's say you have a financial server (the 2k3 box) that will transfer
&lt;br&gt;&amp;gt; customers information for credit, maybe PCI needs to be applied. You need to
&lt;br&gt;&amp;gt; know this kind of things first.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Also, maybe this server has a higher security requirement than another (you
&lt;br&gt;&amp;gt; don’t specify). So if you're normal password policy states 6 char long for a
&lt;br&gt;&amp;gt; password, maybe you would want to go at 8-10 for this one if its more
&lt;br&gt;&amp;gt; critical.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I would also make sure your local admins cant bypass the policy, maybe push
&lt;br&gt;&amp;gt; it thru AD if you have it and they don’t have AD access? Putting it locally
&lt;br&gt;&amp;gt; and giving them local admin is not serious enough for a critical server. So
&lt;br&gt;&amp;gt; I would say in &amp;quot;Domain Policy&amp;quot; under admin tools in windows.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Password policy should come from the top (management, higher than Director)
&lt;br&gt;&amp;gt; and be applied to everyone and everything. It should be clear and short. 1
&lt;br&gt;&amp;gt; page max for a password policy should be more than enough.
&lt;br&gt;&amp;gt; -All passwords should be at least 8 character long
&lt;br&gt;&amp;gt; -All passwords should expire after 45days
&lt;br&gt;&amp;gt; -All passwords need to be complex (INSERT definition..)
&lt;br&gt;&amp;gt; ...
&lt;br&gt;&amp;gt; Have the policy signed (*approved*) by upper management and than applied to
&lt;br&gt;&amp;gt; the 2k3 box.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Side note, the sentence with &amp;quot;loose&amp;quot; I didn’t understand it too much. But I
&lt;br&gt;&amp;gt; would also suggest limiting local admin access to a very few IT employees.
&lt;br&gt;&amp;gt; If they don’t need it don’t give it, all this has to be approved (as we all
&lt;br&gt;&amp;gt; know).
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Hope I was on your topic, if not sorry :)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;
&lt;br&gt;&amp;gt; Philippe Rivest - CEH, Network+, Server+, A+
&lt;br&gt;&amp;gt; TransForce Inc.
&lt;br&gt;&amp;gt; Internal auditor - Information security
&lt;br&gt;&amp;gt; Verificateur interne - Securite de l'information
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 8585 Trans-Canada Highway, Suite 300
&lt;br&gt;&amp;gt; Saint-Laurent (Quebec) H4S 1Z6
&lt;br&gt;&amp;gt; Tel.: 514-331-4417 &amp;nbsp; 
&lt;br&gt;&amp;gt; Fax: 514-856-7541
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.transforce.ca/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.transforce.ca/&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -----Message d'origine-----
&lt;br&gt;&amp;gt; De : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25155939&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25155939&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] De
&lt;br&gt;&amp;gt; la part de pent 5971
&lt;br&gt;&amp;gt; Envoyé : 21 août 2009 08:14
&lt;br&gt;&amp;gt; À : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25155939&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Objet : Re: How to /password policy on Windows 2003
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Any ideas/best practices?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25155939&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&amp;gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;nbsp; &amp;nbsp; 
&lt;/div&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25155939.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25156942</id>
	<title>Re: How to /password policy on Windows 2003</title>
	<published>2009-08-25T12:03:29Z</published>
	<updated>2009-08-25T12:03:29Z</updated>
	<author>
		<name>Gerardo Castillo Alvarado</name>
	</author>
	<content type="html">hi,
&lt;br&gt;This can be useful:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; General Recommendations for Account Lockout and Password Policy
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; Settings
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; In addition to the specific account lockout and password policy
&lt;br&gt;&amp;gt; settings in the previous tables, there are some other configuration
&lt;br&gt;&amp;gt; changes that may help you achieve the level of security that you want.
&lt;br&gt;&amp;gt; These include:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * When you enable account lockout, set the *ForceUnlockLogon*
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; registry value to 1. This setting requires that Windows
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; re-authenticates the user with a domain controller when that
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; user unlocks a computer. This helps to ensure that a user cannot
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; use a previously-cached password to unlock their computer after
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; the account is locked out.
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * False lockouts can occur if you set the *LockoutThreshold*
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; registry value to a value that is lower than the default value
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; of 10. This is because users and programs can retry bad
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; passwords frequently enough to lock out the user account. This
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; adds to administrative costs.
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * After you unlock an account that is locked out, verify that the
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; *LockoutDuration* value is set. You should do this because the
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; value may have changed during the account unlock process.
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * Carefully consider setting the *LockoutDuration* registry value
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; to 0. When you apply this setting, you may incur additional
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; administrative labor by requiring administrators to manually
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; unlock a locked out user account. Although this does increase
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; security, the increased labor drawback may outweigh the security
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; benefit.
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * Define account lockout and password policies once in every
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; domain. Ensure that these policies are defined only in the
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; default domain policy. This helps to avoid conflicting and
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; unexpected policy settings.
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; * Unlock an account from a computer that is in the same Active
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; Directory site as the account. By unlocking the account in the
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; local site, urgent replication occurs in that site which
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; triggers immediate replication of the change. Because of this,
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; the user account should be able to regain access to resources
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; faster than waiting for replication to occur. Note that the
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; AcctInfo.dll tool helps to identify an appropriate domain
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; controller and unlock the account. For more information about
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; AcctInfo.dll, see the &amp;quot;Account Lockout Tools&amp;quot; section in this
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; document.
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;check this [1]. (see &amp;quot;Recommended Password Policy Settings&amp;quot;)
&lt;br&gt;&lt;br&gt;[1] &lt;a href=&quot;http://technet.microsoft.com/en-us/library/cc737614(WS.10).aspx&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://technet.microsoft.com/en-us/library/cc737614(WS.10).aspx&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;Best regards!
&lt;br&gt;&lt;br&gt;pent 5971 escribió:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Any ideas/best practices?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25156942&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&amp;gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;/div&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25156942.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25156870</id>
	<title>Re: How to /password policy on Windows 2003</title>
	<published>2009-08-25T12:01:08Z</published>
	<updated>2009-08-25T12:01:08Z</updated>
	<author>
		<name>Wim Remes-2</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;you should checkout the free benchmarks on the website of the Center &amp;nbsp;
&lt;br&gt;of Information Security (&lt;a href=&quot;http://www.cisecurity.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisecurity.org/&lt;/a&gt;). If not your &amp;nbsp;
&lt;br&gt;silver bullet,
&lt;br&gt;at least they are a good start.
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;&lt;br&gt;Wim
&lt;br&gt;&lt;br&gt;On 21 Aug 2009, at 14:14, pent 5971 wrote:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Any ideas/best practices?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25156870&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25156870.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25140244</id>
	<title>RE: How to /password policy on Windows 2003</title>
	<published>2009-08-25T10:50:57Z</published>
	<updated>2009-08-25T10:50:57Z</updated>
	<author>
		<name>Rivest, Philippe-2</name>
	</author>
	<content type="html">Well first off, I would sadly say it depends a lot on your company and how
&lt;br&gt;they view security, which requirements you have (legals and business).
&lt;br&gt;&lt;br&gt;Let's say you have a financial server (the 2k3 box) that will transfer
&lt;br&gt;customers information for credit, maybe PCI needs to be applied. You need to
&lt;br&gt;know this kind of things first.
&lt;br&gt;&lt;br&gt;Also, maybe this server has a higher security requirement than another (you
&lt;br&gt;dont specify). So if you're normal password policy states 6 char long for a
&lt;br&gt;password, maybe you would want to go at 8-10 for this one if its more
&lt;br&gt;critical.
&lt;br&gt;&lt;br&gt;&lt;br&gt;I would also make sure your local admins cant bypass the policy, maybe push
&lt;br&gt;it thru AD if you have it and they dont have AD access? Putting it locally
&lt;br&gt;and giving them local admin is not serious enough for a critical server. So
&lt;br&gt;I would say in &amp;quot;Domain Policy&amp;quot; under admin tools in windows.
&lt;br&gt;&lt;br&gt;Password policy should come from the top (management, higher than Director)
&lt;br&gt;and be applied to everyone and everything. It should be clear and short. 1
&lt;br&gt;page max for a password policy should be more than enough.
&lt;br&gt;-All passwords should be at least 8 character long
&lt;br&gt;-All passwords should expire after 45days
&lt;br&gt;-All passwords need to be complex (INSERT definition..)
&lt;br&gt;...
&lt;br&gt;Have the policy signed (*approved*) by upper management and than applied to
&lt;br&gt;the 2k3 box.
&lt;br&gt;&lt;br&gt;Side note, the sentence with &amp;quot;loose&amp;quot; I didnt understand it too much. But I
&lt;br&gt;would also suggest limiting local admin access to a very few IT employees.
&lt;br&gt;If they dont need it dont give it, all this has to be approved (as we all
&lt;br&gt;know).
&lt;br&gt;&lt;br&gt;Hope I was on your topic, if not sorry :)
&lt;br&gt;&lt;br&gt;&amp;nbsp;
&lt;br&gt;Philippe Rivest - CEH, Network+, Server+, A+
&lt;br&gt;TransForce Inc.
&lt;br&gt;Internal auditor - Information security
&lt;br&gt;Verificateur interne - Securite de l'information
&lt;br&gt;&lt;br&gt;8585 Trans-Canada Highway, Suite 300
&lt;br&gt;Saint-Laurent (Quebec) H4S 1Z6
&lt;br&gt;Tel.: 514-331-4417 &amp;nbsp; 
&lt;br&gt;Fax: 514-856-7541
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.transforce.ca/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.transforce.ca/&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Message d'origine-----
&lt;br&gt;De : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25140244&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25140244&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] De
&lt;br&gt;la part de pent 5971
&lt;br&gt;Envoyé : 21 août 2009 08:14
&lt;br&gt;À : &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25140244&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Objet : Re: How to /password policy on Windows 2003
&lt;br&gt;&lt;br&gt;Any ideas/best practices?
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25140244&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;smime.p7s&lt;/strong&gt; (2K) &lt;a href=&quot;http://old.nabble.com/attachment/25140244/0/smime.p7s&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25140244.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25139073</id>
	<title>RE: How to /password policy on Windows 2003</title>
	<published>2009-08-25T10:44:18Z</published>
	<updated>2009-08-25T10:44:18Z</updated>
	<author>
		<name>THOMAS, DEDRIC (ATTCLSMA)</name>
	</author>
	<content type="html">Hey,
&lt;br&gt;&lt;br&gt;It depends on what Industry Compliance you are following, each Industry has
&lt;br&gt;it's own set of compliance standards, i.e. PCI, HIPAA, etc... &amp;nbsp;Review your
&lt;br&gt;current policies and guidelines to determine what are the &amp;quot;BEST PRACTICES&amp;quot;
&lt;br&gt;for your company.
&lt;br&gt;&lt;br&gt;Thanks in advance,
&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25139073&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25139073&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;Behalf Of pent 5971
&lt;br&gt;Sent: Friday, August 21, 2009 8:14 AM
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25139073&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: Re: How to /password policy on Windows 2003
&lt;br&gt;&lt;br&gt;Any ideas/best practices?
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25139073&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;smime.p7s&lt;/strong&gt; (7K) &lt;a href=&quot;http://old.nabble.com/attachment/25139073/0/smime.p7s&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25139073.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25121587</id>
	<title>SecurityFocus Microsoft Newsletter #451</title>
	<published>2009-08-24T10:19:33Z</published>
	<updated>2009-08-24T10:19:33Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #451
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by Immunet
&lt;br&gt;&lt;br&gt;Are you running Anti-Virus from Symantec, AVG or Mcafee? Make it significantly more effective and
&lt;br&gt;harness the security of thousands of others with 'Collective Immunity'. See the beta for Immunet
&lt;br&gt;Protect here: &lt;a href=&quot;https://www.immunet.com/user/new&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.immunet.com/user/new&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1.The Scale of Security
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.Hacker-Tool Law Still Does Little
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Microsoft Windows Embedded OpenType Font Engine Unspecified Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Microsoft Windows Telnet NTLM Credential Reflection Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Microsoft Office Web Components ActiveX Control Buffer Overflow Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Microsoft OWC ActiveX Control 'BorderAround()' Heap Corruption Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Microsoft Office Web Components ActiveX Control &amp;nbsp;Memory Allocation Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Microsoft ASP.NET Request Scheduling Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Microsoft Active Template Library Object Type Mismatch Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Microsoft Windows WINS Server Network Buffer Length Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Microsoft Windows WINS Server Network Packet Remote Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Microsoft Remote Desktop Connection ActiveX Control Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Microsoft Windows Workstation Service Double Free Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Microsoft Remote Desktop Connection Client Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Microsoft Windows Malformed AVI File Parsing Remote Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. Microsoft Message Queuing Service NULL Pointer Dereference Local Privilege Escalation
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Microsoft Windows Malformed AVI File Header Parsing Remote Code Execution Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1.The Scale of Security
&lt;br&gt;By Adam O'Donnell
&lt;br&gt;Human beings do not naturally understand scale. While we speak of financial transactions in the
&lt;br&gt;hundreds of billions of dollars as being something as routine as brushing our teeth, we question the
&lt;br&gt;value of programs that cost in the single-digit millions and quibble with friends over dollars.
&lt;br&gt;Similarly, there are many problems in our industry that, when explained to an outsider, sound like
&lt;br&gt;they should have been solved decades ago. It is only when we relate the number of systems that need
&lt;br&gt;to be considered in the repair that we truly communicate the difficulty of the problem.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/503&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/503&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Microsoft Windows Embedded OpenType Font Engine Unspecified Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 36029
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36029&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36029&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;This issue may affect the Embedded OpenType font engine.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to cause affected computers to crash with a Blue Screen
&lt;br&gt;crash event. &amp;nbsp;Remote code execution may also be possible, but this currently has not been been
&lt;br&gt;confirmed.
&lt;br&gt;&lt;br&gt;2. Microsoft Windows Telnet NTLM Credential Reflection Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35993
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35993&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35993&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to an authentication-bypass vulnerability that exists in the Telnet protocol.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to gain unauthorized access to the affected computer with the
&lt;br&gt;privileges of the victim user. Successfully exploiting this issue may compromise the affected computer.
&lt;br&gt;&lt;br&gt;3. Microsoft Office Web Components ActiveX Control Buffer Overflow Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35992
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35992&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35992&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted Web page.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;4. Microsoft OWC ActiveX Control 'BorderAround()' Heap Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35991
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35991&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35991&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted Web page.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;5. Microsoft Office Web Components ActiveX Control &amp;nbsp;Memory Allocation Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35990
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35990&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35990&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components OWC10 ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;6. Microsoft ASP.NET Request Scheduling Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 35985
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35985&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35985&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft ASP.NET is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to cause the application pool on the affected webserver to become
&lt;br&gt;unresponsive, denying service to legitimate users.
&lt;br&gt;&lt;br&gt;NOTE: This issue only affects ASP.NET on webservers running IIS 7 in integrated mode.
&lt;br&gt;&lt;br&gt;7. Microsoft Active Template Library Object Type Mismatch Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35982
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35982&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35982&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Active Template Library is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;This issue affects a private version of the ATL used internally by Microsoft; components written by
&lt;br&gt;other vendors are unlikely to be affected.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary code with the privileges of the user
&lt;br&gt;running an application built against the affected library. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;8. Microsoft Windows WINS Server Network Buffer Length Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35981
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35981&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35981&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Windows WINS Server is prone to a remote integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will completely compromise affected computers. Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;9. Microsoft Windows WINS Server Network Packet Remote Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35980
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35980&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35980&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Windows WINS Server is prone to a remote heap-based buffer-overflow vulnerability
&lt;br&gt;because the application fails to perform adequate boundary-checks on user-supplied data.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will completely compromise affected computers. Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;10. Microsoft Remote Desktop Connection ActiveX Control Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35973
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35973&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35973&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Remote Desktop Connection ActiveX control is prone to a remote heap-based buffer-overflow
&lt;br&gt;vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious Web page.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to execute arbitrary code within the context of the
&lt;br&gt;affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;11. Microsoft Windows Workstation Service Double Free Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35972
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35972&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35972&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by sending specially crafted Remote Procedure Call (RPC) messages
&lt;br&gt;to a vulnerable computer.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code with SYSTEM-level
&lt;br&gt;privileges, completely compromising affected computers. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;12. Microsoft Remote Desktop Connection Client Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35971
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35971&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35971&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Remote Desktop Connection client is prone to a heap-based buffer-overflow vulnerability
&lt;br&gt;when processing certain parameters returned by a malicious RDP (Remote Desktop Protocol) server.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow an attacker to corrupt heap memory and execute
&lt;br&gt;arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely
&lt;br&gt;cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;13. Microsoft Windows Malformed AVI File Parsing Remote Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35970
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35970&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35970&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;This issue arises when an affected Windows component handles a malicious Audio Video Interleave
&lt;br&gt;(AVI) file.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with the privileges of the affected
&lt;br&gt;user. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;NOTE: The affected Windows operating system component is independent of Windows Media Player
&lt;br&gt;therefore this issue does not specifically affect Windows Media Player.
&lt;br&gt;&lt;br&gt;14. Microsoft Message Queuing Service NULL Pointer Dereference Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35969
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35969&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35969&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Message Queuing service is prone to a local privilege-escalation vulnerability because
&lt;br&gt;it fails to adequately handle user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will result in the complete compromise of affected computers.
&lt;br&gt;Failed exploits will cause a denial of service.
&lt;br&gt;&lt;br&gt;15. Microsoft Windows Malformed AVI File Header Parsing Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35967
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35967&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35967&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;This issue arises when an affected Windows component handles a malicious Audio Video Interleave
&lt;br&gt;(AVI) file.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with the privileges of the affected
&lt;br&gt;user. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;NOTE: The affected Windows operating system component is independent of Windows Media Player
&lt;br&gt;therefore this issue does not specifically affect Windows Media Player.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25121587&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25121587&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by Immunet
&lt;br&gt;&lt;br&gt;Are you running Anti-Virus from Symantec, AVG or Mcafee? Make it significantly more effective and
&lt;br&gt;harness the security of thousands of others with 'Collective Immunity'. See the beta for Immunet
&lt;br&gt;Protect here: &lt;a href=&quot;https://www.immunet.com/user/new&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.immunet.com/user/new&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--451-tp25121587p25121587.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25121514</id>
	<title>SecurityFocus Microsoft Newsletter #450</title>
	<published>2009-08-24T10:19:17Z</published>
	<updated>2009-08-24T10:19:17Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #450
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by SC World Congress
&lt;br&gt;&lt;br&gt;Make plans now to attend the second annual SC World Congress - Enterprise Data Security, October
&lt;br&gt;13-14 in New York City. The Congress features a comprehensive, two-day program presented in four
&lt;br&gt;tracks-including the unique Editors Choice sessions-and the industry's largest fall product expo
&lt;br&gt;showcasing IT security solutions from the leading vendors and hot start-ups. &amp;nbsp;Emphasizing quality
&lt;br&gt;content, innovative formats and sessions, global perspectives and ROI, this is the one event you
&lt;br&gt;can't afford to miss. Register by August 31 for big savings. &amp;nbsp;www.scworldcongress.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1.The Scale of Security
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.Hacker-Tool Law Still Does Little
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Microsoft Windows Embedded OpenType Font Engine Unspecified Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Microsoft Windows Telnet NTLM Credential Reflection Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Microsoft Office Web Components ActiveX Control Buffer Overflow Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Microsoft OWC ActiveX Control 'BorderAround()' Heap Corruption Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Microsoft Office Web Components ActiveX Control &amp;nbsp;Memory Allocation Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Microsoft ASP.NET Request Scheduling Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Subversion Binary Delta Processing Multiple Integer Overflow Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Microsoft Active Template Library Object Type Mismatch Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Microsoft Windows WINS Server Network Buffer Length Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Microsoft Windows WINS Server Network Packet Remote Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Sun OpenSSO Enterprise XML Document Processing Unspecified Memory Corruption Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Microsoft August 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Microsoft Remote Desktop Connection ActiveX Control Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. Microsoft Windows Workstation Service Double Free Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Microsoft Remote Desktop Connection Client Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;16. Microsoft Windows Malformed AVI File Parsing Remote Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;17. Microsoft Message Queuing Service NULL Pointer Dereference Local Privilege Escalation
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;18. Microsoft Windows Malformed AVI File Header Parsing Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;19. UltraPlayer Malformed '.usk' Playlist File Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;20. Sun JRE/JDK Java Web Start ActiveX Control ATL Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;21. Microsoft Internet Explorer 8 Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;22. BlazeVideo BlazeDVD Professional '.PLF' File Remote Buffer Overflow Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1.The Scale of Security
&lt;br&gt;By Adam O'Donnell
&lt;br&gt;Human beings do not naturally understand scale. While we speak of financial transactions in the
&lt;br&gt;hundreds of billions of dollars as being something as routine as brushing our teeth, we question the
&lt;br&gt;value of programs that cost in the single-digit millions and quibble with friends over dollars.
&lt;br&gt;Similarly, there are many problems in our industry that, when explained to an outsider, sound like
&lt;br&gt;they should have been solved decades ago. It is only when we relate the number of systems that need
&lt;br&gt;to be considered in the repair that we truly communicate the difficulty of the problem.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/503&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/503&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Microsoft Windows Embedded OpenType Font Engine Unspecified Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 36029
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/36029&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/36029&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;This issue may affect the Embedded OpenType font engine.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to cause affected computers to crash with a Blue Screen
&lt;br&gt;crash event. &amp;nbsp;Remote code execution may also be possible, but this currently has not been been
&lt;br&gt;confirmed.
&lt;br&gt;&lt;br&gt;2. Microsoft Windows Telnet NTLM Credential Reflection Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35993
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35993&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35993&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to an authentication-bypass vulnerability that exists in the Telnet protocol.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to gain unauthorized access to the affected computer with the
&lt;br&gt;privileges of the victim user. Successfully exploiting this issue may compromise the affected computer.
&lt;br&gt;&lt;br&gt;3. Microsoft Office Web Components ActiveX Control Buffer Overflow Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35992
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35992&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35992&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;4. Microsoft OWC ActiveX Control 'BorderAround()' Heap Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35991
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35991&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35991&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;5. Microsoft Office Web Components ActiveX Control &amp;nbsp;Memory Allocation Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35990
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35990&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35990&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components OWC10 ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;6. Microsoft ASP.NET Request Scheduling Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 35985
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35985&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35985&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft ASP.NET is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to cause the application pool on the affected webserver to become
&lt;br&gt;unresponsive, denying service to legitimate users.
&lt;br&gt;&lt;br&gt;NOTE: This issue only affects ASP.NET on webservers running IIS 7 in integrated mode.
&lt;br&gt;&lt;br&gt;7. Subversion Binary Delta Processing Multiple Integer Overflow Vulnerabilities
&lt;br&gt;BugTraq ID: 35983
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-06
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35983&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35983&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Subversion is prone to multiple integer-overflow vulnerabilities.
&lt;br&gt;&lt;br&gt;Attackers can exploit these issues to execute arbitrary code in the context of Subversion clients
&lt;br&gt;and servers. Successful exploits will compromise the affected application and possibly the computer.
&lt;br&gt;Failed attacks will cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;The issues affect the following:
&lt;br&gt;Subversion clients and servers versions 1.5.6 and prior.
&lt;br&gt;Subversion clients and servers versions 1.6.0 through 1.6.3.
&lt;br&gt;&lt;br&gt;8. Microsoft Active Template Library Object Type Mismatch Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35982
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35982&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35982&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Active Template Library is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;This issue affects a private version of the ATL used internally by Microsoft; components written by
&lt;br&gt;other vendors are unlikely to be affected.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary code with the privileges of the user
&lt;br&gt;running an application built against the affected library. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;9. Microsoft Windows WINS Server Network Buffer Length Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35981
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35981&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35981&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Windows WINS Server is prone to a remote integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will completely compromise affected computers. Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;10. Microsoft Windows WINS Server Network Packet Remote Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35980
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35980&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35980&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Windows WINS Server is prone to a remote heap-based buffer-overflow vulnerability
&lt;br&gt;because the application fails to perform adequate boundary-checks on user-supplied data.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will completely compromise affected computers. Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;11. Sun OpenSSO Enterprise XML Document Processing Unspecified Memory Corruption Vulnerability
&lt;br&gt;BugTraq ID: 35977
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-06
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35977&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35977&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Sun OpenSSO Enterprise (formerly Sun Java System Access Manager and Sun Java System Identity Server)
&lt;br&gt;is prone to a memory-corruption vulnerability because it fails to properly handle specially crafted
&lt;br&gt;XML documents.
&lt;br&gt;&lt;br&gt;Very few details are available regarding this issue. We will update this BID as more information
&lt;br&gt;emerges.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the vulnerable
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;12. Microsoft August 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 35974
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-06
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35974&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35974&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft has released advance notification that on August 11, 2009 the vendor will be releasing 9
&lt;br&gt;security bulletins covering multiple issues. The highest severity rating for these issues is 'Critical'.
&lt;br&gt;&lt;br&gt;These issues affect the following:
&lt;br&gt;&lt;br&gt;Windows
&lt;br&gt;Outlook Express
&lt;br&gt;Media Player
&lt;br&gt;.NET
&lt;br&gt;Client for Mac
&lt;br&gt;Office
&lt;br&gt;Visual Studio
&lt;br&gt;ISA Server
&lt;br&gt;BizTalk Server
&lt;br&gt;&lt;br&gt;Successfully exploiting these issues may allow remote or local attackers to compromise affected
&lt;br&gt;computers.
&lt;br&gt;&lt;br&gt;Individual records will be created to document these issues when the bulletins are released.
&lt;br&gt;&lt;br&gt;13. Microsoft Remote Desktop Connection ActiveX Control Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35973
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35973&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35973&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Remote Desktop Connection ActiveX control is prone to a remote heap-based buffer-overflow
&lt;br&gt;vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to execute arbitrary code within the context of the
&lt;br&gt;affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;14. Microsoft Windows Workstation Service Double Free Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35972
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35972&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35972&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by sending specially-crafted Remote Procedure Call (RPC) messages
&lt;br&gt;to a vulnerable computer.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code with SYSTEM-level
&lt;br&gt;privileges, completely compromising affected computers. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;15. Microsoft Remote Desktop Connection Client Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35971
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35971&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35971&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Remote Desktop Connection client is prone to a heap-based buffer-overflow vulnerability
&lt;br&gt;when processing certain parameters returned by a malicious RDP (Remote Desktop Protocol) server.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow an attacker to corrupt heap memory and execute
&lt;br&gt;arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely
&lt;br&gt;cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;16. Microsoft Windows Malformed AVI File Parsing Remote Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35970
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35970&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35970&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;This issue arises when an affected Windows component handles a malicious Audio Video Interleave
&lt;br&gt;(AVI) file.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with the privileges of the affected
&lt;br&gt;user. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;NOTE: The affected Windows operating system component is independent of Windows Media Player
&lt;br&gt;therefore this issue does not specifically affect Windows Media Player.
&lt;br&gt;&lt;br&gt;17. Microsoft Message Queuing Service NULL Pointer Dereference Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35969
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35969&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35969&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The Microsoft Message Queuing service is prone to a local privilege-escalation vulnerability because
&lt;br&gt;it fails to adequately handle user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will result in the complete compromise of affected computers.
&lt;br&gt;Failed exploits will cause a denial of service.
&lt;br&gt;&lt;br&gt;18. Microsoft Windows Malformed AVI File Header Parsing Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35967
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35967&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35967&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;This issue arises when an affected Windows component handles a malicious Audio Video Interleave
&lt;br&gt;(AVI) file.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with the privileges of the affected
&lt;br&gt;user. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;NOTE: The affected Windows operating system component is independent of Windows Media Player
&lt;br&gt;therefore this issue does not specifically affect Windows Media Player.
&lt;br&gt;&lt;br&gt;19. UltraPlayer Malformed '.usk' Playlist File Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35956
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-05
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35956&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35956&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;UltraPlayer is prone to a buffer-overflow &amp;nbsp;vulnerability because the application fails to
&lt;br&gt;bounds-check user-supplied data before copying it into an insufficiently sized buffer.
&lt;br&gt;&lt;br&gt;Attackers can execute arbitrary code in the context of the affected application. Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;UltraPlayer 2.112 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;20. Sun JRE/JDK Java Web Start ActiveX Control ATL Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35945
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-03
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35945&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35945&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Java Web Start ActiveX Control included in Sun JRE and JDK is prone to a remote code-execution
&lt;br&gt;vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting victim to view a malicious
&lt;br&gt;webpage. If successful, the attacker can run arbitrary code with the privileges of the user running
&lt;br&gt;the affected application. Failed exploit attempts will likely result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;This issue is caused by the vulnerabilities described in Microsoft security advisory 973883 and is
&lt;br&gt;related to the following BIDs:
&lt;br&gt;35828 Microsoft Visual Studio Active Template Library COM Object Remote Code Execution Vulnerability
&lt;br&gt;35830 Microsoft Visual Studio Active Template Library NULL String Information Disclosure Vulnerability
&lt;br&gt;35832 Microsoft Visual Studio ATL 'VariantClear()' Remote Code Execution Vulnerability
&lt;br&gt;&lt;br&gt;This issue affects the following:
&lt;br&gt;&lt;br&gt;&amp;nbsp;JDK and JRE 6 Update 14 and prior
&lt;br&gt;&amp;nbsp;JDK and JRE 5.0 Update 19 and prior
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35922 (Sun Java SE Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;21. Microsoft Internet Explorer 8 Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 35941
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-05
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35941&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35941&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits can allow attackers to crash the affected browser, resulting in
&lt;br&gt;denial-of-service conditions. Due to the nature of this issue attackers may be able to corrupt
&lt;br&gt;process memory and execute arbitrary code, but this has not been confirmed.
&lt;br&gt;&lt;br&gt;The issue affects Internet Explorer 8; other versions may also be vulnerable.
&lt;br&gt;&lt;br&gt;22. BlazeVideo BlazeDVD Professional '.PLF' File Remote Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35918
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-08-03
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35918&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35918&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;BlazeDVD Professional is prone to a buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the application
&lt;br&gt;or trigger a denial-of-service condition.
&lt;br&gt;&lt;br&gt;BlazeDVD Professional 5.1 and Blaze Video HDTV Player 6.0 are vulnerable; other versions may also be
&lt;br&gt;affected.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25121514&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25121514&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by SC World Congress
&lt;br&gt;&lt;br&gt;Make plans now to attend the second annual SC World Congress - Enterprise Data Security, October
&lt;br&gt;13-14 in New York City. The Congress features a comprehensive, two-day program presented in four
&lt;br&gt;tracks-including the unique Editors Choice sessions-and the industry's largest fall product expo
&lt;br&gt;showcasing IT security solutions from the leading vendors and hot start-ups. &amp;nbsp;Emphasizing quality
&lt;br&gt;content, innovative formats and sessions, global perspectives and ROI, this is the one event you
&lt;br&gt;can't afford to miss. Register by August 31 for big savings. &amp;nbsp;www.scworldcongress.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--450-tp25121514p25121514.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-25138834</id>
	<title>Re: How to /password policy on Windows 2003</title>
	<published>2009-08-21T05:14:15Z</published>
	<updated>2009-08-21T05:14:15Z</updated>
	<author>
		<name>pent 5971</name>
	</author>
	<content type="html">Any ideas/best practices?
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;2009/8/20, pent 5971 &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=25138834&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pent5971@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt; I have an important Windows 2003 box which we are using only a admin
&lt;br&gt;&amp;gt; account actively. I also need to set a password policy (i have some
&lt;br&gt;&amp;gt; requirements) on this box and dont loose the admin account acces. How
&lt;br&gt;&amp;gt; can i do this password policy?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-How-to--password-policy-on-Windows-2003-tp25138834p25138834.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24631935</id>
	<title>SecurityFocus Microsoft Newsletter #449</title>
	<published>2009-07-23T10:27:37Z</published>
	<updated>2009-07-23T10:27:37Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #449
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by IronKey
&lt;br&gt;&lt;br&gt;INTRODUCING THE WORLD'S ONLY FIPS 140-2 LEVEL 3 VALIDATED USB FLASH DRIVE
&lt;br&gt;&lt;br&gt;Designed to meet the needs of military, government and demanding enterprise users, the IronKey? S200
&lt;br&gt;series USB flash drives have passed the stringent Security Level 3 tests for the FIPS 140-2
&lt;br&gt;standard. A rugged, tamper-resistant and tamper-evident enclosure protects the critical components,
&lt;br&gt;while strong AES 256-bit hardware encryption and active malware defenses safeguard even the most
&lt;br&gt;sensitive data. Enterprise-class central management capabilities also make it easy to enforce
&lt;br&gt;security policies on fleets of drives and even remotely destroy drives in the field.
&lt;br&gt;&lt;br&gt;Learn more at &lt;a href=&quot;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&lt;/a&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1.The Scale of Security
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.Hacker-Tool Law Still Does Little
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. World in Conflict Typecheck Remote Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Wireshark 1.2.0 Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Google Chrome Privilege Escalation Weakness
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. MightSOFT Audio Editor Pro MP3 File Unspecified Memory Corruption Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Icarus '.icp' File Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Mozilla Firefox 3.5 'TraceMonkey' Component Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. LibTIFF Multiple Remote Integer Overflow Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Microsoft Office Web Components ActiveX Control 'msDataSourceObject' Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Microsoft DirectX DirectShow Pointer Validation Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Microsoft Publisher Object Handler Data Pointer Dereference Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. Microsoft Windows Embedded OpenType Font Engine Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Forcing Password Changes for Non-Interacitve Logons
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1.The Scale of Security
&lt;br&gt;By Adam O'Donnell
&lt;br&gt;Human beings do not naturally understand scale. While we speak of financial transactions in the
&lt;br&gt;hundreds of billions of dollars as being something as routine as brushing our teeth, we question the
&lt;br&gt;value of programs that cost in the single-digit millions and quibble with friends over dollars.
&lt;br&gt;Similarly, there are many problems in our industry that, when explained to an outsider, sound like
&lt;br&gt;they should have been solved decades ago. It is only when we relate the number of systems that need
&lt;br&gt;to be considered in the repair that we truly communicate the difficulty of the problem.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/503&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/503&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. World in Conflict Typecheck Remote Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 35751
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-16
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35751&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35751&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;World in Conflict is prone to a remote denial-of-service vulnerability because the application fails
&lt;br&gt;to handle exceptional conditions.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue to crash the affected application, denying service to
&lt;br&gt;legitimate users.
&lt;br&gt;&lt;br&gt;This issue affects World in Conflict 1.0.1.1 and prior versions.
&lt;br&gt;&lt;br&gt;2. Wireshark 1.2.0 Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 35748
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-20
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35748&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35748&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Wireshark is prone to multiple vulnerabilities, including a buffer-overflow issue and
&lt;br&gt;denial-of-service issues.
&lt;br&gt;&lt;br&gt;Exploiting these issues may allow attackers to crash the application and deny service to legitimate
&lt;br&gt;users. Attackers may be able to leverage some of these vulnerabilities to execute arbitrary code,
&lt;br&gt;but this has not been confirmed.
&lt;br&gt;&lt;br&gt;These issues affect Wireshark 0.9.2 through 1.2.0.
&lt;br&gt;&lt;br&gt;3. Google Chrome Privilege Escalation Weakness
&lt;br&gt;BugTraq ID: 35723
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-16
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35723&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35723&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Google Chrome is prone to a weakness that may allow attackers to escalate privileges after carrying
&lt;br&gt;out a successful code-execution attack against a renderer (tab) process.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Chrome 2.0.172.37.
&lt;br&gt;&lt;br&gt;4. MightSOFT Audio Editor Pro MP3 File Unspecified Memory Corruption Vulnerability
&lt;br&gt;BugTraq ID: 35719
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-16
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35719&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35719&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;MightSOFT Audio Editor Pro is prone to an unspecified memory-corruption vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by tricking a victim into opening a malicious MP3 file to execute
&lt;br&gt;arbitrary code and to cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Audio Editor Pro 2.91 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;5. Icarus '.icp' File Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35667
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35667&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35667&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Icarus is prone to a remote stack-based buffer-overflow vulnerability because the application fails
&lt;br&gt;to perform adequate boundary checks on user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers may leverage this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed attacks will cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Icarus 2.0 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;6. Mozilla Firefox 3.5 'TraceMonkey' Component Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35660
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35660&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35660&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Mozilla Firefox is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits may allow an attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the affected application. Failed attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;The issue affects Firefox 3.5; other versions may also be vulnerable.
&lt;br&gt;&lt;br&gt;NOTE: Remote code execution was confirmed in Firefox 3.5 running on Microsoft Windows XP SP2. A
&lt;br&gt;crash was observed in Firefox 3.5 on Windows XP SP3.
&lt;br&gt;&lt;br&gt;UPDATE (July 15, 2009): Remote code execution is also possible in Firefox 3.5 running on Apple Mac OS X.
&lt;br&gt;&lt;br&gt;7. LibTIFF Multiple Remote Integer Overflow Vulnerabilities
&lt;br&gt;BugTraq ID: 35652
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35652&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35652&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;LibTIFF is prone to multiple remote integer-overflow vulnerabilities because it fails to perform
&lt;br&gt;adequate boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;&amp;nbsp;An attacker can exploit these issues to execute arbitrary malicious code in the context of a user
&lt;br&gt;running an application that uses the affected library. Failed exploit attempts will likely crash the
&lt;br&gt;application.
&lt;br&gt;&lt;br&gt;LibTIFF 3.8.2, &amp;nbsp;3.9, and 4.0 are vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;8. Microsoft Office Web Components ActiveX Control 'msDataSourceObject' Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35642
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35642&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35642&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components is prone to a remote code-execution vulnerability that affects the
&lt;br&gt;OWC Spreadsheet ActiveX control. The control is identified by the following CLSIDs:
&lt;br&gt;&lt;br&gt;0002E541-0000-0000-C000-000000000046
&lt;br&gt;0002E559-0000-0000-C000-000000000046
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted site.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;9. Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35631
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35631&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35631&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft ISA Server is prone to an authentication-bypass vulnerability.
&lt;br&gt;&lt;br&gt;An attacker with knowledge of a valid account name can exploit this issue to bypass authentication
&lt;br&gt;and gain access to arbitrary resources within the context of the selected account.
&lt;br&gt;&lt;br&gt;10. Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35616
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35616&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35616&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft DirectX is prone to a remote code-execution vulnerability that resides in the DirectShow
&lt;br&gt;component.
&lt;br&gt;&lt;br&gt;Successful exploits allow remote attackers to execute arbitrary code in the context of the user
&lt;br&gt;running the application that uses DirectX. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;11. Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35601
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35601&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35601&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Virtual PC and Virtual Server are prone to a privilege-escalation vulnerability caused by
&lt;br&gt;an error in decoding privileged instructions.
&lt;br&gt;&lt;br&gt;Note that this issue affects only systems that do not use hardware-assisted virtualization.
&lt;br&gt;&lt;br&gt;Successful exploits may allow local attackers to elevate privileges within a guest operating system.
&lt;br&gt;&lt;br&gt;12. Microsoft DirectX DirectShow Pointer Validation Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;BugTraq ID: 35600
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35600&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35600&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft DirectX is prone to a remote code-execution vulnerability that resides in the DirectShow
&lt;br&gt;component.
&lt;br&gt;&lt;br&gt;Successful exploits allow remote attackers to execute arbitrary code in the context of the user
&lt;br&gt;running the application that uses DirectX. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;13. Microsoft Publisher Object Handler Data Pointer Dereference Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35599
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35599&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35599&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Publisher is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by enticing a victim to open a malicious Publisher file.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;14. Microsoft Windows Embedded OpenType Font Engine Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35187
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35187&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35187&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remotely exploitable integer-overflow vulnerability because it fails
&lt;br&gt;to properly bounds-check user-supplied input before copying it into an insufficiently sized memory
&lt;br&gt;buffer.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary machine code in the context of the
&lt;br&gt;vulnerable software on the targeted user's computer.
&lt;br&gt;&lt;br&gt;15. Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35186
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35186&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35186&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remotely exploitable heap-overflow vulnerability because the
&lt;br&gt;software fails to properly bounds-check user-supplied input before copying it into an insufficiently
&lt;br&gt;sized memory buffer.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary machine code in the context of the
&lt;br&gt;vulnerable software on the targeted user's computer.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;1. Forcing Password Changes for Non-Interacitve Logons
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/archive/88/505115&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/archive/88/505115&lt;/a&gt;&lt;br&gt;&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24631935&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24631935&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by IronKey
&lt;br&gt;&lt;br&gt;INTRODUCING THE WORLD'S ONLY FIPS 140-2 LEVEL 3 VALIDATED USB FLASH DRIVE
&lt;br&gt;&lt;br&gt;Designed to meet the needs of military, government and demanding enterprise users, the IronKey? S200
&lt;br&gt;series USB flash drives have passed the stringent Security Level 3 tests for the FIPS 140-2
&lt;br&gt;standard. A rugged, tamper-resistant and tamper-evident enclosure protects the critical components,
&lt;br&gt;while strong AES 256-bit hardware encryption and active malware defenses safeguard even the most
&lt;br&gt;sensitive data. Enterprise-class central management capabilities also make it easy to enforce
&lt;br&gt;security policies on fleets of drives and even remotely destroy drives in the field.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Always-On AES 256-bit Hardware Encryption
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; FIPS 140-2 Level 3 Validated
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Hardened Case?Waterproof Beyond MIL-STD-810F
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Remote Management Software
&lt;br&gt;&lt;br&gt;Research for the IronKey architecture was funded in part by the U.S. Department of Homeland
&lt;br&gt;Security. In addition, IronKey maintains a trusted supply chain: all research and development is
&lt;br&gt;performed in the USA, and all boards are built and all drives are assembled in secure facilities in
&lt;br&gt;the USA.
&lt;br&gt;&lt;br&gt;IronKey Basic S200 drives will also be available in high-capacity 16GB models.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--449-tp24631935p24631935.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24590182</id>
	<title>RE: Forcing Password Changes for Non-Interacitve Logons</title>
	<published>2009-07-21T03:44:27Z</published>
	<updated>2009-07-21T03:44:27Z</updated>
	<author>
		<name>Mark Holmes-2</name>
	</author>
	<content type="html">Hi, &amp;nbsp;
&lt;br&gt;&lt;br&gt;Sure - see
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.nuffield.ox.ac.uk/users/holmes/reportpasswordchange.zip&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.nuffield.ox.ac.uk/users/holmes/reportpasswordchange.zip&lt;/a&gt;&lt;br&gt;&lt;br&gt;There are three files, the .vbs, which you will need to edit to suit your environment, a text file which is the text that will be included in the email sent to the user, and a .bat file which just calls the script - this batch file should be run as a scheduled task in the context of a user with read access to AD.
&lt;br&gt;&lt;br&gt;I have edited out much of the config for security reasons, you will need to have a look at the .vbs and change settings where appropriate - ie your domain, the password expiry no of days etc - it's all pretty straightforward.
&lt;br&gt;&lt;br&gt;You will need to create a secure password reset page, we use a .NET control to achieve this. &amp;nbsp;Note the page will need to run in the context of a user with *write* access to AD.
&lt;br&gt;&lt;br&gt;There are other scripts out there that do this, just Google 'password expiry script' or similar.
&lt;br&gt;&lt;br&gt;Regards,
&lt;br&gt;&lt;br&gt;Mark
&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: Kosala Atapattu [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;kosala.atapattu@...&lt;/a&gt;] 
&lt;br&gt;Sent: 21 July 2009 04:48
&lt;br&gt;To: Mark Holmes
&lt;br&gt;Cc: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;focus-ms@...&lt;/a&gt;
&lt;br&gt;Subject: Re: Forcing Password Changes for Non-Interacitve Logons
&lt;br&gt;&lt;br&gt;Care to share the script :).
&lt;br&gt;&lt;br&gt;Kosala
&lt;br&gt;&lt;br&gt;On Tue, Jul 21, 2009 at 1:55 AM, Mark
&lt;br&gt;Holmes&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;mark.holmes@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; We have a similar issue at my place - not all users are joined to the
&lt;br&gt;&amp;gt; domain, so don't do an interactive logon.  I use a vb script which
&lt;br&gt;&amp;gt; runs nightly and checks AD for users whose password is due to expire,
&lt;br&gt;&amp;gt; it sends email reminders 14 7 3 and 2 days before expiry via email
&lt;br&gt;&amp;gt; (pulls the users address from AD).  They then go to a secure page on
&lt;br&gt;&amp;gt; our intranet to change their password.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Cheers,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Mark
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot;
&lt;br&gt;&amp;gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I have googled and googled but cannot find the answer to this one,
&lt;br&gt;&amp;gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt;&amp;gt; We have ADS password policy enforced whereby the user has to change
&lt;br&gt;&amp;gt;&amp;gt; their password every 60 days. If they have not changed their
&lt;br&gt;&amp;gt;&amp;gt; password after this time their account is locked. Unfortunately the
&lt;br&gt;&amp;gt;&amp;gt; users with non-interactive accounts do not get the notification to
&lt;br&gt;&amp;gt;&amp;gt; change their password nor can they get to the change password
&lt;br&gt;&amp;gt;&amp;gt; facility that the interactive logon users can use. Is there any way
&lt;br&gt;&amp;gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot;
&lt;br&gt;&amp;gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590182&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I have googled and googled but cannot find the answer to this one,
&lt;br&gt;&amp;gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt;&amp;gt; We have ADS password policy enforced whereby the user has to change
&lt;br&gt;&amp;gt;&amp;gt; their password every 60 days. If they have not changed their
&lt;br&gt;&amp;gt;&amp;gt; password after this time their account is locked. Unfortunately the
&lt;br&gt;&amp;gt;&amp;gt; users with non-interactive accounts do not get the notification to
&lt;br&gt;&amp;gt;&amp;gt; change their password nor can they get to the change password
&lt;br&gt;&amp;gt;&amp;gt; facility that the interactive logon users can use. Is there any way
&lt;br&gt;&amp;gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Kosala
&lt;br&gt;--------------------------------------------
&lt;br&gt;Disclaimer: Views expressed in this mail are my personal views and
&lt;br&gt;they would not reflect views of the employer.
&lt;br&gt;--------------------------------------------
&lt;br&gt;blog.kosala.net
&lt;br&gt;www.linux.lk/~kosala/
&lt;br&gt;www.kosala.net
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Forcing-Password-Changes-for-Non-Interacitve-Logons-tp24578612p24590182.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24590067</id>
	<title>Re: Forcing Password Changes for Non-Interacitve Logons</title>
	<published>2009-07-20T20:48:27Z</published>
	<updated>2009-07-20T20:48:27Z</updated>
	<author>
		<name>Kosala Atapattu-2</name>
	</author>
	<content type="html">Care to share the script :).
&lt;br&gt;&lt;br&gt;Kosala
&lt;br&gt;&lt;br&gt;On Tue, Jul 21, 2009 at 1:55 AM, Mark
&lt;br&gt;Holmes&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590067&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;mark.holmes@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; We have a similar issue at my place - not all users are joined to the
&lt;br&gt;&amp;gt; domain, so don't do an interactive logon.  I use a vb script which
&lt;br&gt;&amp;gt; runs nightly and checks AD for users whose password is due to expire,
&lt;br&gt;&amp;gt; it sends email reminders 14 7 3 and 2 days before expiry via email
&lt;br&gt;&amp;gt; (pulls the users address from AD).  They then go to a secure page on
&lt;br&gt;&amp;gt; our intranet to change their password.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Cheers,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Mark
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590067&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot;
&lt;br&gt;&amp;gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590067&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I have googled and googled but cannot find the answer to this one,
&lt;br&gt;&amp;gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt;&amp;gt; We have ADS password policy enforced whereby the user has to change
&lt;br&gt;&amp;gt;&amp;gt; their password every 60 days. If they have not changed their
&lt;br&gt;&amp;gt;&amp;gt; password after this time their account is locked. Unfortunately the
&lt;br&gt;&amp;gt;&amp;gt; users with non-interactive accounts do not get the notification to
&lt;br&gt;&amp;gt;&amp;gt; change their password nor can they get to the change password
&lt;br&gt;&amp;gt;&amp;gt; facility that the interactive logon users can use. Is there any way
&lt;br&gt;&amp;gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590067&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot;
&lt;br&gt;&amp;gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24590067&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I have googled and googled but cannot find the answer to this one,
&lt;br&gt;&amp;gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt;&amp;gt; We have ADS password policy enforced whereby the user has to change
&lt;br&gt;&amp;gt;&amp;gt; their password every 60 days. If they have not changed their
&lt;br&gt;&amp;gt;&amp;gt; password after this time their account is locked. Unfortunately the
&lt;br&gt;&amp;gt;&amp;gt; users with non-interactive accounts do not get the notification to
&lt;br&gt;&amp;gt;&amp;gt; change their password nor can they get to the change password
&lt;br&gt;&amp;gt;&amp;gt; facility that the interactive logon users can use. Is there any way
&lt;br&gt;&amp;gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Kosala
&lt;br&gt;--------------------------------------------
&lt;br&gt;Disclaimer: Views expressed in this mail are my personal views and
&lt;br&gt;they would not reflect views of the employer.
&lt;br&gt;--------------------------------------------
&lt;br&gt;blog.kosala.net
&lt;br&gt;www.linux.lk/~kosala/
&lt;br&gt;www.kosala.net
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Forcing-Password-Changes-for-Non-Interacitve-Logons-tp24578612p24590067.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24589973</id>
	<title>Re: Forcing Password Changes for Non-Interacitve Logons</title>
	<published>2009-07-20T16:06:24Z</published>
	<updated>2009-07-20T16:06:24Z</updated>
	<author>
		<name>Kurt Buff</name>
	</author>
	<content type="html">On Wed, Jul 15, 2009 at 21:23, &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24589973&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt; I have googled and googled but cannot find the answer to this one, hoping you can help.
&lt;br&gt;&amp;gt; We have ADS password policy enforced whereby the user has to change their password
&lt;br&gt;&amp;gt; every 60 days. If they have not changed their password after this time their account is locked.
&lt;br&gt;&amp;gt; Unfortunately the users with non-interactive accounts do not get the notification to change
&lt;br&gt;&amp;gt; their password nor can they get to the change password facility that the interactive logon
&lt;br&gt;&amp;gt; users can use. Is there any way to notify the users and have them carry out a password
&lt;br&gt;&amp;gt; change?
&lt;br&gt;&lt;br&gt;Not directly as far as I'm aware, but there are a ton of free tools in
&lt;br&gt;the world that will allow you to filter your user base according to
&lt;br&gt;the age of their password - check, for instance, joeware.net, and
&lt;br&gt;google for netpwage.exe, among many others.
&lt;br&gt;&lt;br&gt;Wrap that up in a script with one of my favorite tools - blat.exe - to
&lt;br&gt;send each person an email for several days before it expires, and
&lt;br&gt;Bob's yer uncle.
&lt;br&gt;&lt;br&gt;There are probably commercial tools as well, but I don't know that
&lt;br&gt;space well at all.
&lt;br&gt;&lt;br&gt;Kurt
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Forcing-Password-Changes-for-Non-Interacitve-Logons-tp24578612p24589973.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24579930</id>
	<title>Re: Forcing Password Changes for Non-Interacitve Logons</title>
	<published>2009-07-20T15:55:04Z</published>
	<updated>2009-07-20T15:55:04Z</updated>
	<author>
		<name>Mark Holmes-2</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;We have a similar issue at my place - not all users are joined to the &amp;nbsp;
&lt;br&gt;domain, so don't do an interactive logon. &amp;nbsp;I use a vb script which &amp;nbsp;
&lt;br&gt;runs nightly and checks AD for users whose password is due to expire, &amp;nbsp;
&lt;br&gt;it sends email reminders 14 7 3 and 2 days before expiry via email &amp;nbsp;
&lt;br&gt;(pulls the users address from AD). &amp;nbsp;They then go to a secure page on &amp;nbsp;
&lt;br&gt;our intranet to change their password.
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;&lt;br&gt;Mark
&lt;br&gt;&lt;br&gt;&lt;br&gt;On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24579930&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot; &amp;nbsp;
&lt;br&gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24579930&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&lt;br&gt;&amp;gt; I have googled and googled but cannot find the answer to this one, &amp;nbsp;
&lt;br&gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt; We have ADS password policy enforced whereby the user has to change &amp;nbsp;
&lt;br&gt;&amp;gt; their password every 60 days. If they have not changed their &amp;nbsp;
&lt;br&gt;&amp;gt; password after this time their account is locked. Unfortunately the &amp;nbsp;
&lt;br&gt;&amp;gt; users with non-interactive accounts do not get the notification to &amp;nbsp;
&lt;br&gt;&amp;gt; change their password nor can they get to the change password &amp;nbsp;
&lt;br&gt;&amp;gt; facility that the interactive logon users can use. Is there any way &amp;nbsp;
&lt;br&gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&lt;br&gt;On 20 Jul 2009, at 23:32, &amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24579930&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;quot; &amp;nbsp;
&lt;br&gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24579930&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;GrowlieGirl@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; I have googled and googled but cannot find the answer to this one, &amp;nbsp;
&lt;br&gt;&amp;gt; hoping you can help.
&lt;br&gt;&amp;gt; We have ADS password policy enforced whereby the user has to change &amp;nbsp;
&lt;br&gt;&amp;gt; their password every 60 days. If they have not changed their &amp;nbsp;
&lt;br&gt;&amp;gt; password after this time their account is locked. Unfortunately the &amp;nbsp;
&lt;br&gt;&amp;gt; users with non-interactive accounts do not get the notification to &amp;nbsp;
&lt;br&gt;&amp;gt; change their password nor can they get to the change password &amp;nbsp;
&lt;br&gt;&amp;gt; facility that the interactive logon users can use. Is there any way &amp;nbsp;
&lt;br&gt;&amp;gt; to notify the users and have them carry out a password change?
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Forcing-Password-Changes-for-Non-Interacitve-Logons-tp24578612p24579930.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24578612</id>
	<title>Forcing Password Changes for Non-Interacitve Logons</title>
	<published>2009-07-15T21:23:55Z</published>
	<updated>2009-07-15T21:23:55Z</updated>
	<author>
		<name>GrowlieGirl</name>
	</author>
	<content type="html">I have googled and googled but cannot find the answer to this one, hoping you can help.
&lt;br&gt;We have ADS password policy enforced whereby the user has to change their password every 60 days. If they have not changed their password after this time their account is locked. Unfortunately the users with non-interactive accounts do not get the notification to change their password nor can they get to the change password facility that the interactive logon users can use. Is there any way to notify the users and have them carry out a password change?
&lt;br&gt;&amp;nbsp;
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Forcing-Password-Changes-for-Non-Interacitve-Logons-tp24578612p24578612.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24499784</id>
	<title>SecurityFocus Microsoft Newsletter #448</title>
	<published>2009-07-15T07:59:50Z</published>
	<updated>2009-07-15T07:59:50Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #448
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by Ironkey
&lt;br&gt;&lt;br&gt;INTRODUCING THE WORLD'S ONLY FIPS 140-2 LEVEL 3 VALIDATED USB FLASH DRIVE
&lt;br&gt;&lt;br&gt;Designed to meet the needs of military, government and demanding enterprise users, the IronKey. S200
&lt;br&gt;series USB flash drives have passed the stringent Security Level 3 tests for the FIPS 140-2
&lt;br&gt;standard. A rugged, tamper-resistant and tamper-evident enclosure protects the critical components,
&lt;br&gt;while strong AES 256-bit hardware encryption and active malware defenses safeguard even the most
&lt;br&gt;sensitive data. Enterprise-class central management capabilities also make it easy to enforce
&lt;br&gt;security policies on fleets of drives and even remotely destroy drives in the field.
&lt;br&gt;&lt;br&gt;Learn more at &lt;a href=&quot;https://www.ironkey.com/S200_Launch&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.ironkey.com/S200_Launch&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Hacker-Tool Law Still Does Little
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. A Botnet by Any Other Name
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Icarus '.icp' File Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Mozilla Firefox 3.5 'Tracemonkey' Component Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. LibTIFF Multiple Remote Integer Overflow Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Wyse Device Manager Unspecified Remote Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Microsoft Office Web Components ActiveX Control 'msDataSourceObject' Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Pirch IRC Client Remote Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Microsoft Internet Explorer 'AddFavorite' Method Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Microsoft July 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Bugzilla Bug Status Modification Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Microsoft DirectX DirectShow Pointer Validation Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. Microsoft Publisher Object Handler Data Pointer Dereference Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Microsoft Windows 'msvidctl.dll' ActiveX Control Unspecified Remote Memory Corruption
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;16. Microsoft Windows 'MPEG2TuneRequest' ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;17. Microsoft Windows Embedded OpenType Font Engine Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;18. Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. A Botnet by Any Other Name
&lt;br&gt;By Gubter Ollmann
&lt;br&gt;The news has been awash the last few weeks with fears over globe-spanning botnets and their criminal
&lt;br&gt;intent: Conficker managed to hog the limelight for well over a month, and then came Finjan's
&lt;br&gt;disclosure of a previously unknown - and currently unnamed - botnet consisting of some 1.9 million
&lt;br&gt;malicious agents.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/501&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/501&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Icarus '.icp' File Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35667
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35667&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35667&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Icarus is prone to a remote stack-based buffer-overflow vulnerability because the application fails
&lt;br&gt;to perform adequate boundary checks on user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers may leverage this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed attacks will cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Icarus 2.0 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;2. Mozilla Firefox 3.5 'Tracemonkey' Component Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35660
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35660&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35660&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Mozilla Firefox is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits may allow an attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the affected application. Failed attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;The issue affects Firefox 3.5; other versions may also be vulnerable.
&lt;br&gt;&lt;br&gt;NOTE: Remote code execution was confirmed in Firefox 3.5 running on Microsoft Windows XP SP2. A
&lt;br&gt;crash was observed in Firefox 3.5 on Windows XP SP3.
&lt;br&gt;&lt;br&gt;3. LibTIFF Multiple Remote Integer Overflow Vulnerabilities
&lt;br&gt;BugTraq ID: 35652
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35652&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35652&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;LibTIFF is prone to multiple remote integer-overflow vulnerabilities because it fails to perform
&lt;br&gt;adequate boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;&amp;nbsp;An attacker can exploit these issues to execute arbitrary malicious code in the context of a user
&lt;br&gt;running an application that uses the affected library. Failed exploit attempts will likely crash the
&lt;br&gt;application.
&lt;br&gt;&lt;br&gt;LibTIFF 3.8.2, &amp;nbsp;3.9, and 4.0 are vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;4. Wyse Device Manager Unspecified Remote Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35649
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-10
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35649&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35649&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Wyse Device Manager is prone to a remote buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the affected
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;5. Microsoft Office Web Components ActiveX Control 'msDataSourceObject' Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35642
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35642&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35642&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Web Components is prone to a remote code-execution vulnerability that affects the
&lt;br&gt;OWC Spreadsheet ActiveX control. The control is identified by the following CLSIDs:
&lt;br&gt;&lt;br&gt;0002E541-0000-0000-C000-000000000046
&lt;br&gt;0002E559-0000-0000-C000-000000000046
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted site.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;6. Pirch IRC Client Remote Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35639
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-12
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35639&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35639&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Pirch IRC is prone to a remote buffer-overflow vulnerability because it fails to bounds-check
&lt;br&gt;user-supplied data before copying it into an insufficiently sized buffer.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by enticing an unsuspecting user into connecting to a malicious
&lt;br&gt;IRC server. Successful attacks will allow arbitrary code to run within the context of the affected
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;Pirch IRC 98 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;NOTE: The vulnerability may be related to the issue described in BID 5079. We will update the BID
&lt;br&gt;when more information emerges.
&lt;br&gt;&lt;br&gt;7. Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35631
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35631&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35631&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft ISA Server is prone to an authentication-bypass vulnerability.
&lt;br&gt;&lt;br&gt;An attacker with knowledge of a valid account name can exploit this issue to bypass authentication
&lt;br&gt;and gain access to arbitrary resources within the context of the selected account.
&lt;br&gt;&lt;br&gt;8. Microsoft Internet Explorer 'AddFavorite' Method Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 35620
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35620&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35620&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits can allow attackers to crash the affected browser, resulting in
&lt;br&gt;denial-of-service conditions. Reports indicate that this issue may be used to corrupt process memory
&lt;br&gt;and be leveraged to execute code, but this has not been confirmed.
&lt;br&gt;&lt;br&gt;Internet Explorer 7 and 8 are known to be vulnerable; other versions may be affected as well.
&lt;br&gt;&lt;br&gt;9. Microsoft July 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 35617
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35617&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35617&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft has released advance notification that on July 14, 2009 the vendor will be releasing six
&lt;br&gt;security bulletins covering multiple issues. The highest severity rating for these issues is 'Critical'.
&lt;br&gt;&lt;br&gt;These issues affect the following:
&lt;br&gt;&lt;br&gt;Windows
&lt;br&gt;DirectX
&lt;br&gt;Virtual PC
&lt;br&gt;Virtual Server
&lt;br&gt;ISA Server
&lt;br&gt;Publisher
&lt;br&gt;&lt;br&gt;Successfully exploiting these issues may allow remote or local attackers to compromise affected
&lt;br&gt;computers.
&lt;br&gt;&lt;br&gt;We will create individual records to better document these issues when the bulletins are released.
&lt;br&gt;&lt;br&gt;10. Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35616
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35616&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35616&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft DirectX is prone to a remote code-execution vulnerability that resides in the DirectShow
&lt;br&gt;component.
&lt;br&gt;&lt;br&gt;Successful exploits allow remote attackers to execute arbitrary code in the context of the user
&lt;br&gt;running the application that uses DirectX. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;11. Bugzilla Bug Status Modification Security Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35604
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35604&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35604&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Bugzilla is prone to a security-bypass vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits will allow authenticated attackers to modify the status of bug reports, which
&lt;br&gt;may aid in further attacks.
&lt;br&gt;&lt;br&gt;The following are vulnerable:
&lt;br&gt;&lt;br&gt;Bugzilla 3.1.1 through 3.2.3
&lt;br&gt;Bugzilla 3.3.1 through 3.3.4
&lt;br&gt;&lt;br&gt;12. Microsoft Virtual PC and Virtual Server Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35601
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35601&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35601&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Virtual PC and Virtual Server are prone to a privilege-escalation vulnerability caused by
&lt;br&gt;an error in decoding privileged instructions.
&lt;br&gt;&lt;br&gt;Note that this issue affects only systems that do not use hardware-assisted virtualization.
&lt;br&gt;&lt;br&gt;Successful exploits may allow local attackers to elevate privileges within a guest operating system.
&lt;br&gt;&lt;br&gt;13. Microsoft DirectX DirectShow Pointer Validation Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;BugTraq ID: 35600
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35600&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35600&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft DirectX is prone to a remote code-execution vulnerability that resides in the DirectShow
&lt;br&gt;component.
&lt;br&gt;&lt;br&gt;Successful exploits allow remote attackers to execute arbitrary code in the context of the user
&lt;br&gt;running the application that uses DirectX. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;14. Microsoft Publisher Object Handler Data Pointer Dereference Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35599
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35599&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35599&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Publisher is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by enticing a victim to open a malicious Publisher file.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;15. Microsoft Windows 'msvidctl.dll' ActiveX Control Unspecified Remote Memory Corruption Vulnerability
&lt;br&gt;BugTraq ID: 35585
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-06
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35585&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35585&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote memory-corruption vulnerability that affects the Video
&lt;br&gt;Control ActiveX control.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted website.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;Windows XP SP3 and Windows Server 2003 are vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;16. Microsoft Windows 'MPEG2TuneRequest' ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35558
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-06
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35558&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35558&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability that affects the TV Tuner library.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to visit a maliciously crafted website.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context
&lt;br&gt;of the currently logged-in user.
&lt;br&gt;&lt;br&gt;Windows XP SP3 and Windows Server 2003 are vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;17. Microsoft Windows Embedded OpenType Font Engine Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35187
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35187&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35187&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remotely exploitable integer-overflow vulnerability because it fails
&lt;br&gt;to properly bounds-check user-supplied input before copying it into an insufficiently sized memory
&lt;br&gt;buffer.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary machine code in the context of the
&lt;br&gt;vulnerable software on the targeted user's computer.
&lt;br&gt;&lt;br&gt;18. Microsoft Windows Embedded OpenType Font Engine Heap Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35186
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-07-14
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35186&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35186&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remotely exploitable heap-overflow vulnerability because the
&lt;br&gt;software fails to properly bounds-check user-supplied input before copying it into an insufficiently
&lt;br&gt;sized memory buffer.
&lt;br&gt;&lt;br&gt;Remote attackers can exploit this issue to execute arbitrary machine code in the context of the
&lt;br&gt;vulnerable software on the targeted user's computer.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24499784&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24499784&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by Ironkey
&lt;br&gt;&lt;br&gt;INTRODUCING THE WORLD'S ONLY FIPS 140-2 LEVEL 3 VALIDATED USB FLASH DRIVE
&lt;br&gt;&lt;br&gt;Designed to meet the needs of military, government and demanding enterprise users, the IronKey. S200
&lt;br&gt;series USB flash drives have passed the stringent Security Level 3 tests for the FIPS 140-2
&lt;br&gt;standard. A rugged, tamper-resistant and tamper-evident enclosure protects the critical components,
&lt;br&gt;while strong AES 256-bit hardware encryption and active malware defenses safeguard even the most
&lt;br&gt;sensitive data. Enterprise-class central management capabilities also make it easy to enforce
&lt;br&gt;security policies on fleets of drives and even remotely destroy drives in the field.
&lt;br&gt;&lt;br&gt;.	Always-On AES 256-bit Hardware Encryption
&lt;br&gt;&lt;br&gt;.	FIPS 140-2 Level 3 Validated
&lt;br&gt;&lt;br&gt;.	Hardened Case.Waterproof Beyond MIL-STD-810F
&lt;br&gt;&lt;br&gt;.	Remote Management Software
&lt;br&gt;&lt;br&gt;Research for the IronKey architecture was funded in part by the U.S. Department of Homeland
&lt;br&gt;Security. In addition, IronKey maintains a trusted supply chain: all research and development is
&lt;br&gt;performed in the USA, and all boards are built and all drives are assembled in secure facilities in
&lt;br&gt;the USA.
&lt;br&gt;&lt;br&gt;IronKey Basic S200 drives will also be available in high-capacity 16GB models.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.ironkey.com/S200_Launch?ik_c=s200_launch&amp;ik_s=security_focus&amp;ik_t=newsletter&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--448-tp24499784p24499784.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24263335</id>
	<title>BH Training</title>
	<published>2009-06-26T11:57:51Z</published>
	<updated>2009-06-26T11:57:51Z</updated>
	<author>
		<name>Thor (Hammer of God)</name>
	</author>
	<content type="html">The SF list has been pretty quiet, so I’m hoping this important security training offering will go through (seeing as how Black Hat is a proud sponsor of SF ;)
&lt;br&gt;&lt;br&gt;It’s that time of year again --- BH Vegas is coming up on us pretty quickly, and I’m really excited about this year’s edition of Microsoft Ninjitsu: Black Belt Edition.
&lt;br&gt;&lt;br&gt;Get the skinny here:
&lt;br&gt;&lt;a href=&quot;http://www.blackhat.com/html/bh-usa-09/train-bh-usa-09-tm-ms-bbe.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.blackhat.com/html/bh-usa-09/train-bh-usa-09-tm-ms-bbe.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;One of the common misconceptions I hear regarding this curriculum is that it’s the “same old Microsoft training.”  That couldn’t be farther from the truth.  Each year the training curriculum undergoes deep review to add new technologies and update other technologies in order to deliver the most up-to-date information available.   This year is certainly no exception –we’re even bringing in content on Win7, TMG, SSTP, etc.. .  If your job requires you to administer, secure, or evaluate Microsoft technologies, then I highly recommend that you at least look over this class.   In fact, this is the only 3rd party class at BH to have engineering personnel on-hand sanctioned by MSFT.   And as usual, you can expect heckling from the likes of Litchfield, Dr. Shinder, Paget, and others as they try to throw me off balance during the training ☺ 
&lt;br&gt;&lt;br&gt;Direct inquires welcome for those with serious questions in regard to specific content.
&lt;br&gt;&lt;br&gt;Thanks for your time and the opportunity to interrupt your day ;)
&lt;br&gt;&lt;br&gt;t
&lt;br&gt;&lt;br&gt;____________________
&lt;br&gt;Dr. Timothy (Thor) Mullen, Ph.D.
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24263335&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/BH-Training-tp24263335p24263335.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24224570</id>
	<title>SecurityFocus Microsoft Newsletter #447</title>
	<published>2009-06-26T10:44:12Z</published>
	<updated>2009-06-26T10:44:12Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #447
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites' security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510135;37701660;s&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510135;37701660;s&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Hacker-Tool Law Still Does Little
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. A Botnet by Any Other Name
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Apple Safari 'file://' Protocol Handler Information Disclosure and Denial of Service
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Adobe Shockwave Player Director File Parsing Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Microsoft Internet Explorer HTML Attribute JavaScript URI Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. LibTIFF 'LZWDecodeCompat()' Remote Buffer Underflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Apple Safari 'parent/top' Cross Domain Scripting Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. DESlock+ 'dlpcrypt.sys' Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Multiple Browsers Cached Certificate HTTP Site Spoofing Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. ClamAV Prior to 0.95.2 Multiple Scanner Bypass Vulnerabilities
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. A Botnet by Any Other Name
&lt;br&gt;By Gubter Ollmann
&lt;br&gt;The news has been awash the last few weeks with fears over globe-spanning botnets and their criminal
&lt;br&gt;intent: Conficker managed to hog the limelight for well over a month, and then came Finjan's
&lt;br&gt;disclosure of a previously unknown - and currently unnamed - botnet consisting of some 1.9 million
&lt;br&gt;malicious agents.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/501&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/501&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35496
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-25
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35496&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35496&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Motorola Timbuktu Pro for Windows is prone to a remote stack-based buffer-overflow vulnerability
&lt;br&gt;because it fails to properly bounds-check user-supplied data before copying it into an
&lt;br&gt;insufficiently sized memory buffer.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Failed
&lt;br&gt;exploit attempts will result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Versions prior to Timbuktu Pro 8.6.7 for Windows are vulnerable.
&lt;br&gt;&lt;br&gt;2. Apple Safari 'file://' Protocol Handler Information Disclosure and Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 35482
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-23
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35482&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35482&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to an information-disclosure and denial-of-service vulnerability because it
&lt;br&gt;fails to properly sanitize user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to access local files. On Microsoft Windows platforms, the
&lt;br&gt;attacker may launch rogue instances of Windows Explorer, which may affect the computer's overall
&lt;br&gt;stability, leading to a denial-of-service.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Apple Mac OS X 10.5.6 and on Microsoft
&lt;br&gt;Windows XP and Vista.
&lt;br&gt;&lt;br&gt;3. Adobe Shockwave Player Director File Parsing Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35469
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-23
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35469&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35469&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Adobe Shockwave Player is prone to a remote code-execution vulnerability caused by a
&lt;br&gt;memory-dereferencing error while parsing Adobe Director files.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the currently logged-in
&lt;br&gt;user. &amp;nbsp;Failed exploit attempts may cause a denial-of-service condition.
&lt;br&gt;&lt;br&gt;Versions prior to Shockwave Player 11.5.0.600 for Microsoft Windows are vulnerable.
&lt;br&gt;&lt;br&gt;4. Microsoft Internet Explorer HTML Attribute JavaScript URI Security Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35455
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-22
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35455&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35455&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a security-bypass vulnerability because it fails to properly
&lt;br&gt;enforce restrictions on script behavior.
&lt;br&gt;&lt;br&gt;&amp;nbsp;An attacker may exploit this issue to bypass restrictions on the execution of JavaScript code. This
&lt;br&gt;may aid in further attacks.
&lt;br&gt;&lt;br&gt;5. LibTIFF 'LZWDecodeCompat()' Remote Buffer Underflow Vulnerability
&lt;br&gt;BugTraq ID: 35451
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-21
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35451&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35451&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;LibTIFF is prone to a remote buffer-underflow vulnerability because it fails to perform adequate
&lt;br&gt;boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;&amp;nbsp;An attacker can exploit this issue to execute arbitrary malicious code in the context of a user
&lt;br&gt;running an application that uses the affected library. Failed exploit attempts will likely crash the
&lt;br&gt;application.
&lt;br&gt;&lt;br&gt;LibTIFF 3.8.2 is vulnerable; other versions may be affected as well.
&lt;br&gt;&lt;br&gt;6. Apple Safari 'parent/top' Cross Domain Scripting Vulnerability
&lt;br&gt;BugTraq ID: 35441
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-19
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35441&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35441&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a cross-domain scripting vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this vulnerability to bypass the same-origin policy and obtain
&lt;br&gt;potentially sensitive information or launch spoofing attacks against other sites. Other attacks are
&lt;br&gt;also possible.
&lt;br&gt;&lt;br&gt;7. DESlock+ 'dlpcrypt.sys' Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35432
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-18
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35432&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35432&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;DESlock+ is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;An attacker may exploit this issue to execute arbitrary code with elevated privileges, which may
&lt;br&gt;facilitate a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;DESlock+ 4.0.2 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;8. Multiple Browsers Cached Certificate HTTP Site Spoofing Vulnerability
&lt;br&gt;BugTraq ID: 35411
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-17
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35411&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35411&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple browsers are prone to a vulnerability that may allow attackers to spoof arbitrary HTTPS sites.
&lt;br&gt;&lt;br&gt;Attackers may exploit this vulnerability via a malicious webpage to spoof the origin of an HTTPS
&lt;br&gt;site. Successful exploits will lead to a false sensitive security since the victim is visiting a
&lt;br&gt;site that is assumed to be legitimate.
&lt;br&gt;&lt;br&gt;9. ClamAV Prior to 0.95.2 Multiple Scanner Bypass Vulnerabilities
&lt;br&gt;BugTraq ID: 35410
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-17
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35410&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35410&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;ClamAV is prone to multiple vulnerabilities because it fails to properly restrict certain files
&lt;br&gt;after scanning them.
&lt;br&gt;&lt;br&gt;A successful attack may allow malicious users to bypass security restrictions placed on certain
&lt;br&gt;files. Exploits may aid in further attacks.
&lt;br&gt;&lt;br&gt;Versions prior to ClamAv 0.95.2 are vulnerable.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24224570&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24224570&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites' security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510135;37701660;s&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510135;37701660;s&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--447-tp24224570p24224570.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24114028</id>
	<title>SecurityFocus Microsoft Newsletter #446</title>
	<published>2009-06-19T08:06:44Z</published>
	<updated>2009-06-19T08:06:44Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #446
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites' security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510129;37701658;c&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510129;37701658;c&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Hacker-Tool Law Still Does Little
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. A Botnet by Any Other Name
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. DESlock+ 'dlpcrypt.sys' Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Apple iPhone and iPod touch Prior to Version 3.0 Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Multiple Browsers Cached Certificate HTTP Site Spoofing Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. ClamAV Prior to 0.95.2 Multiple Scanner Bypass Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Multiple Browser Malicious Proxy HTTPS Man In The Middle Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. TorrentTrader Classic Multiple Remote Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Multiple Kaspersky Products PDF File Scan Evasion Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. SugarCRM Email Attachment Arbitrary File Upload Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Multiple Symantec Products RAR/TAR/ZIP File Scan Evasion Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Safari X.509 Extended Validation Certificate Revocation Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Apple Safari for Windows Reset Password Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Apple Safari 'open-help-anchor' URI Handler Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Apple Safari CFNetwork Downloaded Files Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. Apple Safari for Windows Private Browsing Cookie Data Local Information Disclosure
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Apple Safari CFNetwork Script Injection Weakness
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;16. Apple Safari Windows Installer Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;17. Microsoft Windows Media Player ScriptCommand Multiple Information Disclosure Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;18. Apple Safari CoreGraphics TrueType Font Handling Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;19. Microsoft PowerPoint Freelance Layout Parsing Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;20. Kerio MailServer WebMail Cross Site Scripting Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;21. RETIRED: Apple Safari Prior to 4.0 Multiple Security Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;22. Microsoft Windows DNS Devolution Third-Level Domain Name Resolving Weakness
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;23. eBay Enhanced Picture Services ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;24. Microsoft Excel QSIR Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;25. Microsoft Excel Malformed Shared String Table Record Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;26. Microsoft Excel Field Sanitization Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;27. Microsoft Excel String Copy Stack Overflow Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;28. Microsoft Excel Array Indexing Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;29. Microsoft Excel Record Object Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;30. Microsoft Windows Argument Validation Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;31. Microsoft Windows Pointer Validation Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;32. Microsoft Internet Explorer Malformed Row Property Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;33. Microsoft Internet Explorer 'onreadystatechange' Corrupt Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;34. Microsoft IIS 5.0 WebDAV Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;35. Microsoft Active Directory Encoded LDAP String Memory Corruption Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;36. Microsoft Active Directory Memory Leak Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;37. Microsoft Internet Explorer Event Handler Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;38. Microsoft Internet Explorer 'setCapture()' Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;39. Microsoft Internet Explorer XMLHttpRequest Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;40. Microsoft Windows Search Script Injection Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;41. Microsoft RPC Marshalling Engine Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;42. Microsoft Visual Studio 'MSCOMM32.OCX' ActiveX Control Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;43. Microsoft Excel Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;44. Microsoft Windows Print Spooler Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;45. Microsoft Windows Print Spooler Local Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;46. Microsoft Windows Print Spooler 'EnumeratePrintShares()' Remote Stack Buffer Overflow
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;47. Microsoft Internet Explorer Cached Content Cross Domain Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;48. Microsoft Internet Explorer (CVE-2009-1141) Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;49. Microsoft Word Record Parsing Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;50. Microsoft Word Record Parsing Length Field Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;51. Microsoft Office Works for Windows Document Converters Remote Code Execution Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. SecurityFocus Microsoft Newsletter #445
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. A Botnet by Any Other Name
&lt;br&gt;By Gubter Ollmann
&lt;br&gt;The news has been awash the last few weeks with fears over globe-spanning botnets and their criminal
&lt;br&gt;intent: Conficker managed to hog the limelight for well over a month, and then came Finjan's
&lt;br&gt;disclosure of a previously unknown - and currently unnamed - botnet consisting of some 1.9 million
&lt;br&gt;malicious agents.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/501&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/501&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. DESlock+ 'dlpcrypt.sys' Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35432
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-18
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35432&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35432&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;DESlock+ is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;An attacker may exploit this issue to execute arbitrary code with elevated privileges, which may
&lt;br&gt;facilitate a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;DESlock+ 4.0.2 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;2. Apple iPhone and iPod touch Prior to Version 3.0 Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 35414
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-17
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35414&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35414&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple iPhone and iPod touch are prone to multiple vulnerabilities.
&lt;br&gt;&lt;br&gt;Successfully exploiting these issues may allow attackers to bypass security restrictions, obtain
&lt;br&gt;sensitive information, or cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;These issues affect the following:
&lt;br&gt;&lt;br&gt;iPhone OS 1.0 through 2.2.1
&lt;br&gt;iPhone OS for iPod touch 1.1 through 2.2.1
&lt;br&gt;&lt;br&gt;3. Multiple Browsers Cached Certificate HTTP Site Spoofing Vulnerability
&lt;br&gt;BugTraq ID: 35411
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-17
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35411&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35411&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple browsers are prone to a vulnerability that may allow attackers to spoof arbitrary HTTPS sites.
&lt;br&gt;&lt;br&gt;Attackers may exploit this vulnerability via a malicious webpage to spoof the origin of an HTTPS
&lt;br&gt;site. Successful exploits will lead to a false sensitive security since the victim is visiting a
&lt;br&gt;site that is assumed to be legitimate.
&lt;br&gt;&lt;br&gt;4. ClamAV Prior to 0.95.2 Multiple Scanner Bypass Vulnerabilities
&lt;br&gt;BugTraq ID: 35410
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-17
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35410&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35410&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;ClamAV is prone to multiple vulnerabilities because it fails to properly restrict certain files
&lt;br&gt;after scanning them.
&lt;br&gt;&lt;br&gt;A successful attack may allow malicious users to bypass security restrictions placed on certain
&lt;br&gt;files. Exploits may aid in further attacks.
&lt;br&gt;&lt;br&gt;Versions prior to ClamAv 0.95.2 are vulnerable.
&lt;br&gt;&lt;br&gt;5. Multiple Browser Malicious Proxy HTTPS Man In The Middle Vulnerability
&lt;br&gt;BugTraq ID: 35380
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-11
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35380&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35380&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple web browsers are prone to a man-in-the-middle vulnerability.
&lt;br&gt;&lt;br&gt;Attacker-supplied HTML and script code would run in the context of the affected browser, potentially
&lt;br&gt;allowing the attacker to steal cookie-based authentication credentials or to control how sites are
&lt;br&gt;rendered to the user. Other attacks are also possible.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35326 (Mozilla Firefox/Thunderbird/SeaMonkey MFSA
&lt;br&gt;2009-24 through -32 Multiple Remote Vulnerabilities), but has been assigned its own record to better
&lt;br&gt;document it.
&lt;br&gt;&lt;br&gt;UPDATE (June 17, 2009): This BID had been updated to reflect that the issue affects multiple
&lt;br&gt;browsers, not just Mozilla products.
&lt;br&gt;&lt;br&gt;6. TorrentTrader Classic Multiple Remote Vulnerabilities
&lt;br&gt;BugTraq ID: 35369
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-15
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35369&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35369&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;TorrentTrader Classic is prone to multiple vulnerabilities:
&lt;br&gt;&lt;br&gt;- An insufficient entropy weakness
&lt;br&gt;- Multiple information-disclosure vulnerabilities
&lt;br&gt;- Multiple SQL-injection vulnerabilities
&lt;br&gt;- Multiple HTML-injection vulnerabilities
&lt;br&gt;- Multiple cross-site-scripting vulnerabilities
&lt;br&gt;- A local-file-include vulnerability
&lt;br&gt;&lt;br&gt;&amp;nbsp;Exploiting these issues could allow an attacker to steal cookie-based authentication credentials,
&lt;br&gt;compromise the application, obtain sensitive information, access or modify data, or exploit latent
&lt;br&gt;vulnerabilities in the underlying database.
&lt;br&gt;&lt;br&gt;TorrentTrader Classic 1.09 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;7. Multiple Kaspersky Products PDF File Scan Evasion Vulnerability
&lt;br&gt;BugTraq ID: 35365
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35365&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35365&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple Kaspersky products are prone to a vulnerability that may allow certain PDF files to bypass
&lt;br&gt;the scan engine.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to distribute files containing malicious code that the
&lt;br&gt;antivirus application will fail to detect.
&lt;br&gt;&lt;br&gt;8. SugarCRM Email Attachment Arbitrary File Upload Vulnerability
&lt;br&gt;BugTraq ID: 35361
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-13
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35361&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35361&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;SugarCRM is prone to a vulnerability that lets attackers upload arbitrary files. The issue occurs
&lt;br&gt;because the application fails to adequately validate user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of
&lt;br&gt;the webserver process. This may facilitate unauthorized access or privilege escalation; other
&lt;br&gt;attacks are also possible.
&lt;br&gt;&lt;br&gt;The issue affects SugarCRM 5.2.0e; prior versions may also be vulnerable.
&lt;br&gt;&lt;br&gt;9. Multiple Symantec Products RAR/TAR/ZIP File Scan Evasion Vulnerability
&lt;br&gt;BugTraq ID: 35354
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-12
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35354&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35354&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple Symantec products are prone to a vulnerability that may allow certain compressed archives
&lt;br&gt;to bypass the scan engine.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to distribute files containing malicious code that the
&lt;br&gt;antivirus application will fail to detect.
&lt;br&gt;&lt;br&gt;The following products are affected:
&lt;br&gt;&lt;br&gt;Symantec Mail Security for Domino
&lt;br&gt;Symantec Mail Security for Microsoft Exchange
&lt;br&gt;Symantec Mail Security for SMTP
&lt;br&gt;Symantec Brightmail Gateway
&lt;br&gt;Symantec AntiVirus for Network Attached Storage
&lt;br&gt;Symantec AntiVirus for Caching
&lt;br&gt;Symantec AntiVirus for Messaging
&lt;br&gt;Symantec Protection for SharePoint Servers
&lt;br&gt;Symantec Protection Suite
&lt;br&gt;Symantec Scan Engine
&lt;br&gt;Symantec Client Security
&lt;br&gt;Symantec Endpoint Protection
&lt;br&gt;Symantec AntiVirus Corporate Edition
&lt;br&gt;Norton Internet Security
&lt;br&gt;Norton 360
&lt;br&gt;Norton AntiVirus
&lt;br&gt;Norton Systemworks
&lt;br&gt;&lt;br&gt;10. Safari X.509 Extended Validation Certificate Revocation Security Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35353
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35353&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35353&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Safari is prone to a security-bypass vulnerability because it fails to properly verify X.509
&lt;br&gt;extended validation (EV) certificates.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows attackers to perform man-in-the-middle attacks by
&lt;br&gt;impersonating trusted webservers. This will aid in further attacks.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;11. Apple Safari for Windows Reset Password Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35352
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35352&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35352&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a local information-disclosure vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to obtain sensitive information that may aid in further attacks.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Microsoft Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;12. Apple Safari 'open-help-anchor' URI Handler Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35351
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35351&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35351&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Successful exploits may allow an attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the affected application or to obtain sensitive information.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;13. Apple Safari CFNetwork Downloaded Files Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35347
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35347&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35347&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to an information-disclosure vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to access other users' files as they are downloaded.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Apple Mac OS X 10.5.6 and on Microsoft
&lt;br&gt;Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;14. Apple Safari for Windows Private Browsing Cookie Data Local Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35346
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35346&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35346&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a local information-disclosure vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to obtain sensitive information that may aid in further attacks.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Microsoft Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;15. Apple Safari CFNetwork Script Injection Weakness
&lt;br&gt;BugTraq ID: 35344
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35344&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35344&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a weakness that may allow attackers to run arbitrary script code.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue through social engineering or through exploiting other latent
&lt;br&gt;vulnerabilities to execute arbitrary script code in the context of the victim.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Apple Mac OS X 10.4.11 and 10.5.7 and on
&lt;br&gt;Microsoft Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;16. Apple Safari Windows Installer Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35339
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35339&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35339&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;A local attacker may be able to exploit this issue to gain elevated privileges, which may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;This issue affects versions prior to Safari 4.0 running on Microsoft Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;17. Microsoft Windows Media Player ScriptCommand Multiple Information Disclosure Vulnerabilities
&lt;br&gt;BugTraq ID: 35335
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-12
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35335&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35335&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows Media Player is prone to multiple information-disclosure vulnerabilities because
&lt;br&gt;it fails to properly restrict access to certain functionality when handling media files.
&lt;br&gt;&lt;br&gt;An attacker can exploit these vulnerabilities to obtain information that may aid in further attacks.
&lt;br&gt;&lt;br&gt;18. Apple Safari CoreGraphics TrueType Font Handling Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35308
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35308&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35308&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari CoreGraphics is prone to a remote code-execution vulnerability because it fails to
&lt;br&gt;adequately handle TrueType fonts.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;This issue affects &amp;nbsp;versions prior to Safari 4.0 running on Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;19. Microsoft PowerPoint Freelance Layout Parsing Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35275
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-10
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35275&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35275&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft PowerPoint is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by enticing a victim to open a malicious Freelance file.
&lt;br&gt;&lt;br&gt;Successful exploits can allow the attacker to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;20. Kerio MailServer WebMail Cross Site Scripting Vulnerability
&lt;br&gt;BugTraq ID: 35264
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35264&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35264&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Kerio MailServer WebMail is prone to a cross-site scripting vulnerability because it fails to
&lt;br&gt;properly sanitize user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker may leverage this issue to execute arbitrary script code in the browser of an
&lt;br&gt;unsuspecting user in the context of the affected site. This may allow the attacker to steal
&lt;br&gt;cookie-based authentication credentials and to launch other attacks.
&lt;br&gt;&lt;br&gt;&amp;nbsp;Kerio MailServer 6.6.0, 6.6.1, 6.6.2, and 6.7.0 are vulnerable.
&lt;br&gt;&lt;br&gt;21. RETIRED: Apple Safari Prior to 4.0 Multiple Security Vulnerabilities
&lt;br&gt;BugTraq ID: 35260
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35260&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35260&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Safari is prone to multiple security vulnerabilities that have been addressed in Apple security
&lt;br&gt;advisory APPLE-SA-2009-06-08-1. These issues affect versions prior to Safari 4.0 running on Apple
&lt;br&gt;Mac OS X 10.4.11 and 10.5.7, Windows XP, and Windows Vista.
&lt;br&gt;&lt;br&gt;&amp;nbsp;NOTE: This BID is being retired because the following individual records have been created to
&lt;br&gt;better document issues previously mentioned in this BID:
&lt;br&gt;&lt;br&gt;35321 WebKit XML External Entity Information Disclosure Vulnerability
&lt;br&gt;35320 WebKit HTML 5 Standard Method Cross Site Scripting Vulnerability
&lt;br&gt;35325 WebKit JavaScript DOM User After Free Remote Code Execution Vulnerability
&lt;br&gt;35322 WebKit 'Canvas' HTML Element Image Capture Remote Information Disclosure Vulnerability
&lt;br&gt;35319 WebKit 'document.implementation' Cross Domain Scripting Vulnerability
&lt;br&gt;35271 WebKit DOM Event Handler Remote Memory Corruption Vulnerability
&lt;br&gt;35317 WebKit Subframe Click Jacking Vulnerability
&lt;br&gt;35318 WebKit CSS 'Attr' Function Remote Code Execution Vulnerability
&lt;br&gt;35315 WebKit JavaScript 'onload()' Event Cross Domain Scripting Vulnerability
&lt;br&gt;35310 WebKit 'Attr' DOM Objects Remote Code Execution Vulnerability
&lt;br&gt;35311 WebKit JavaScript Exception Handling Remote Code Execution Vulnerability
&lt;br&gt;35283 WebKit XSLT Redirects Remote Information Disclosure Vulnerability
&lt;br&gt;35284 WebKit 'Document()' Function Remote Information Disclosure Vulnerability
&lt;br&gt;35309 WebKit JavaScript Garbage Collector Memory Corruption Vulnerability
&lt;br&gt;35270 WebKit 'XMLHttpRequest' HTTP Response Splitting Vulnerability
&lt;br&gt;35272 WebKit Drag Event Remote Information Disclosure Vulnerability
&lt;br&gt;35308 Apple Safari CoreGraphics TrueType Font Handling Remote Code Execution Vulnerability
&lt;br&gt;33276 Multiple Browser JavaScript Engine 'Math.Random()' Cross Domain Information Disclosure
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp;35352 Apple Safari for Windows Reset Password Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp;35346 Apple Safari for Windows Private Browsing Cookie Data Local Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp;35353 Safari X.509 Extended Validation Certificate Revocation Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp;35350 WebKit Java Applet Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp;35340 WebKit Custom Cursor and Adjusting CSS3 Hotspot Properties Browser UI Element Spoofing
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp;35348 WebKit Web Inspector Cross Site Scripting Vulnerability
&lt;br&gt;&amp;nbsp;35349 WebKit Web Inspector Page Privilege Cross Domain Scripting Vulnerability
&lt;br&gt;&amp;nbsp;35351 Apple Safari 'open-help-anchor' URI Handler Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp;35334 WebKit SVG Animation Elements User After Free Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp;35333 WebKit File Enumeration Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp;35327 WebKit 'Location' and 'History' Objects Cross Site Scripting Vulnerability
&lt;br&gt;&amp;nbsp;35332 WebKit 'about:blank' Security Bypass Vulnerability
&lt;br&gt;&amp;nbsp;35330 WebKit JavaScript Prototypes Cross Site Scripting Vulnerability
&lt;br&gt;&amp;nbsp;35331 WebKit 'Canvas' SVG Image Capture Remote Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp;35328 WebKit Frame Transition Cross Domain Scripting Vulnerability
&lt;br&gt;&amp;nbsp;35339 Apple Safari Windows Installer Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp;35344 Apple Safari CFNetwork Script Injection Weakness
&lt;br&gt;&amp;nbsp;35347 Apple Safari CFNetwork Downloaded Files Information Disclosure Vulnerability
&lt;br&gt;&lt;br&gt;22. Microsoft Windows DNS Devolution Third-Level Domain Name Resolving Weakness
&lt;br&gt;BugTraq ID: 35255
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35255&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35255&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a weakness that affects the Windows DNS client and arises because of a
&lt;br&gt;design error in the DNS devolution process.
&lt;br&gt;&lt;br&gt;The attacker could set up a malicious site and carry out attacks against victims who are
&lt;br&gt;inadvertently directed to the malicious site. These attacks could include disclosure of the private
&lt;br&gt;IP address, disclosure of authentication credentials, modification of client proxy settings,
&lt;br&gt;phishing, redirection to other malicious sites, enticing vulnerable users to download malware, and more.
&lt;br&gt;&lt;br&gt;23. eBay Enhanced Picture Services ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35248
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35248&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35248&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;eBay Enhanced Picture Services ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;24. Microsoft Excel QSIR Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35246
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35246&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35246&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel
&lt;br&gt;('.xls') file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;25. Microsoft Excel Malformed Shared String Table Record Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35245
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35245&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35245&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to an integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;26. Microsoft Excel Field Sanitization Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35244
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35244&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35244&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;27. Microsoft Excel String Copy Stack Overflow Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35243
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35243&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35243&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;28. Microsoft Excel Array Indexing Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35242
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35242&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35242&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;29. Microsoft Excel Record Object Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35241
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35241&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35241&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;30. Microsoft Windows Argument Validation Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35240
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35240&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35240&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a local privilege-escalation vulnerability that occurs in the Windows
&lt;br&gt;kernel.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with kernel-level privileges.
&lt;br&gt;Successful exploits will result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;31. Microsoft Windows Pointer Validation Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35238
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35238&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35238&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a local privilege-escalation vulnerability that occurs in the Windows
&lt;br&gt;kernel.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with kernel-level privileges.
&lt;br&gt;Successful exploits will result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;32. Microsoft Internet Explorer Malformed Row Property Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35235
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35235&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35235&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;33. Microsoft Internet Explorer 'onreadystatechange' Corrupt Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35234
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35234&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35234&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;34. Microsoft IIS 5.0 WebDAV Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35232
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35232&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35232&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Information Services (IIS) is prone to an authentication-bypass vulnerability
&lt;br&gt;because it fails to properly enforce access restrictions on certain requests to a site that requires
&lt;br&gt;authentication.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to gain unauthorized access to protected resources, which may
&lt;br&gt;lead to other attacks.
&lt;br&gt;&lt;br&gt;This issue affects IIS 5.0.
&lt;br&gt;&lt;br&gt;35. Microsoft Active Directory Encoded LDAP String Memory Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35226
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35226&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35226&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Active Directory is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Successful exploits will completely compromise the affected computer. Failed attacks will cause
&lt;br&gt;denial-of-service conditions.
&lt;br&gt;&lt;br&gt;36. Microsoft Active Directory Memory Leak Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 35225
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35225&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35225&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Active Directory is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to crash the server, denying access to legitimate users.
&lt;br&gt;&lt;br&gt;37. Microsoft Internet Explorer Event Handler Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35224
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35224&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35224&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;38. Microsoft Internet Explorer 'setCapture()' Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35223
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35223&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35223&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;39. Microsoft Internet Explorer XMLHttpRequest Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35222
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35222&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35222&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;40. Microsoft Windows Search Script Injection Vulnerability
&lt;br&gt;BugTraq ID: 35220
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35220&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35220&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows Search is prone to a script-injection vulnerability because it fails to adequately
&lt;br&gt;sanitize user-supplied input when previewing search results.
&lt;br&gt;&lt;br&gt;Successful exploits will cause malicious script code to run in the local context, allowing attackers
&lt;br&gt;to steal potentially sensitive information or perform other attacks.
&lt;br&gt;&lt;br&gt;The issue affects Windows Search installed on all supported editions of Windows XP and Windows
&lt;br&gt;Server 2003. Note that Windows Vista and Windows Server 2008 are not affected.
&lt;br&gt;&lt;br&gt;41. Microsoft RPC Marshalling Engine Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35219
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35219&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35219&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows RPC Marshalling Engine is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by sending a specially crafted RPC request to an affected computer.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow the attacker to execute arbitrary code with full
&lt;br&gt;system rights, completely compromising affected computers. Failed exploit attempts will likely
&lt;br&gt;result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;42. Microsoft Visual Studio 'MSCOMM32.OCX' ActiveX Control Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35218
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35218&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35218&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Visual Studio is prone to a remote heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to execute arbitrary code within the context of the
&lt;br&gt;affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;43. Microsoft Excel Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35215
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35215&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35215&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;44. Microsoft Windows Print Spooler Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35209
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35209&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35209&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability that affects the Print Spooler
&lt;br&gt;service.
&lt;br&gt;&lt;br&gt;A remote authenticated attacker can exploit this issue to execute arbitrary code with SYSTEM-level
&lt;br&gt;privileges, which can result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;45. Microsoft Windows Print Spooler Local Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35208
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35208&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35208&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows Messenger is prone to a local information-disclosure vulnerability that affects
&lt;br&gt;the Print Spooler service.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows attackers to obtain sensitive information that may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;46. Microsoft Windows Print Spooler 'EnumeratePrintShares()' Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35206
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35206&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35206&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote stack-based buffer-overflow vulnerability that affects the
&lt;br&gt;Windows Print Spooler.
&lt;br&gt;&lt;br&gt;Exploiting this vulnerability allows attackers to execute arbitrary code with system-level
&lt;br&gt;privileges. Failed exploit attempts will likely cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;47. Microsoft Internet Explorer Cached Content Cross Domain Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35200
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35200&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35200&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a cross-domain information-disclosure vulnerability because
&lt;br&gt;the application fails to properly enforce the same-origin policy.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to access local files or content from a browser window in another
&lt;br&gt;domain or security zone. This may allow the attacker to obtain sensitive information or may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;48. Microsoft Internet Explorer (CVE-2009-1141) Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35198
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35198&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35198&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;application. Successful exploits will compromise the application and possibly the computer. Failed
&lt;br&gt;attacks may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;49. Microsoft Word Record Parsing Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35190
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35190&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35190&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Word is prone to a buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;50. Microsoft Word Record Parsing Length Field Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35188
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35188&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35188&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Word is prone to a stack-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;51. Microsoft Office Works for Windows Document Converters Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35184
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35184&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35184&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Works for Windows document converters are prone to a remote code-execution
&lt;br&gt;vulnerability because the application fails to properly handle specially crafted files.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to open a malicious '.wps' file.
&lt;br&gt;&lt;br&gt;Successful exploits would allow the attacker to execute arbitrary code in the context of the
&lt;br&gt;currently logged-in user.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;1. SecurityFocus Microsoft Newsletter #445
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/archive/88/504256&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/archive/88/504256&lt;/a&gt;&lt;br&gt;&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24114028&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24114028&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites' security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510129;37701658;c&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510129;37701658;c&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--446-tp24114028p24114028.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-24001255</id>
	<title>SecurityFocus Microsoft Newsletter #445</title>
	<published>2009-06-12T08:03:26Z</published>
	<updated>2009-06-12T08:03:26Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #445
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites. security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510119;37701656;z&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510119;37701656;z&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;SECURITY BLOGS
&lt;br&gt;SecurityFocus has selected a few syndicated sources that stand out as conveying topics of interest
&lt;br&gt;for our community. We are proud to offer content from Matasano at this time and will be adding more
&lt;br&gt;in the coming weeks.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/blogs&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/blogs&lt;/a&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Hacker-Tool Law Still Does Little
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. A Botnet by Any Other Name
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Apple Safari CoreGraphics TrueType Font Handling Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Microsoft PowerPoint Freelance Layout Parsing Heap Based Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Kerio MailServer WebMail Cross Site Scripting Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. Apple Safari Prior to 4.0 Multiple Security Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Microsoft Windows DNS Devolution Third-Level Domain Name Resolving Weakness
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. eBay Enhanced Picture Services ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. Microsoft Excel QSIR Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. Microsoft Excel Malformed Shared String Table Record Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Microsoft Excel Field Sanitization Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Microsoft Excel String Copy Stack Overflow Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Microsoft Excel Array Indexing Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Microsoft Excel Record Object Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Microsoft Windows Argument Validation Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. XM Easy Personal FTP Server Multiple Command Remote Buffer Overflow Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Microsoft Windows Pointer Validation Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;16. Microsoft Internet Explorer Malformed Row Property Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;17. Microsoft Internet Explorer 'onreadystatechange' Corrupt Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;18. Microsoft IIS 5.0 WebDAV Authentication Bypass Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;19. Online Armor Personal Firewall IOCTL Request Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;20. Microsoft Active Directory Encoded LDAP String Memory Corruption Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;21. Microsoft Active Directory Memory Leak Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;22. Microsoft Internet Explorer Event Handler Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;23. Microsoft Internet Explorer 'setCapture()' Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;24. Microsoft Internet Explorer XMLHttpRequest Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;25. Microsoft Windows Search Script Injection Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;26. Microsoft RPC Marshalling Engine Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;27. Microsoft Visual Studio 'MSCOMM32.OCX' ActiveX Control Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;28. Microsoft Excel Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;29. Microsoft June 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;30. Microsoft Windows Print Spooler Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;31. Microsoft Windows Print Spooler Local Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;32. Microsoft Windows Print Spooler 'EnumeratePrintShares()' Remote Stack Buffer Overflow
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;33. Microsoft Internet Explorer Cached Content Cross Domain Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;34. Microsoft Internet Explorer (CVE-2009-1141) Uninitialized Memory Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;35. Microsoft Word Record Parsing (CVE-2009-0565) Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;36. Microsoft Word Record Parsing Length Field Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;37. Microsoft Office Works for Windows Document Converters Remote Code Execution Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;38. Apple QuickTime PSD Image Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;39. Apple QuickTime Clipping Region (CRGN) Atom Types Heap Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;40. Apple QuickTime Image Description Atom Sign Extension Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;41. Apple QuickTime JP2 Image Handling Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;42. Apple QuickTime PICT Image Heap Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;43. Apple QuickTime MS ADPCM Audio File Heap Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;44. Apple QuickTime User Atom Data Size Uninitialized Memory Access Remote Code Execution
&lt;br&gt;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;45. Apple QuickTime FLC Compression File Heap Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;46. Apple QuickTime Sorenson 3 Video File Remote Memory Corruption Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;47. Apple iTunes Multiple URI Handler Stack Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;48. SafeNet SoftRemote IKE Service Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. Hacker-Tool Law Still Does Little
&lt;br&gt;By Mark Rasch
&lt;br&gt;On August 10, 2007, a new section of the German Penal code went into effect. The statute, intended
&lt;br&gt;to implement certain provisions of the Council of Europe Treaty on Cybercrime, could be interpreted
&lt;br&gt;to make the creation or distribution of computer security software a criminal offense.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/502&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/502&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. A Botnet by Any Other Name
&lt;br&gt;By Gubter Ollmann
&lt;br&gt;The news has been awash the last few weeks with fears over globe-spanning botnets and their criminal
&lt;br&gt;intent: Conficker managed to hog the limelight for well over a month, and then came Finjan's
&lt;br&gt;disclosure of a previously unknown - and currently unnamed - botnet consisting of some 1.9 million
&lt;br&gt;malicious agents.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/501&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/501&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Apple Safari CoreGraphics TrueType Font Handling Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35308
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35308&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35308&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari CoreGraphics is prone to a remote code-execution vulnerability because it fails to
&lt;br&gt;adequately handle TrueType fonts.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;This issue affects &amp;nbsp;versions prior to Safari 4.0 running on Windows XP and Vista.
&lt;br&gt;&lt;br&gt;NOTE: This issue was previously covered in BID 35260 (Apple Safari Prior to 4.0 Multiple Security
&lt;br&gt;Vulnerabilities), but has been assigned its own record to better document it.
&lt;br&gt;&lt;br&gt;2. Microsoft PowerPoint Freelance Layout Parsing Heap Based Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35275
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-10
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35275&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35275&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft PowerPoint is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by enticing a victim to open a malicious Freelance file.
&lt;br&gt;&lt;br&gt;Successful exploits can allow the attacker to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;3. Kerio MailServer WebMail Cross Site Scripting Vulnerability
&lt;br&gt;BugTraq ID: 35264
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35264&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35264&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Kerio MailServer WebMail is prone to a cross-site scripting vulnerability because it fails to
&lt;br&gt;properly sanitize user-supplied input.
&lt;br&gt;&lt;br&gt;An attacker may leverage this issue to execute arbitrary script code in the browser of an
&lt;br&gt;unsuspecting user in the context of the affected site. This may allow the attacker to steal
&lt;br&gt;cookie-based authentication credentials and to launch other attacks.
&lt;br&gt;&lt;br&gt;&amp;nbsp;Kerio MailServer versions 6.6.0, 6.6.1, 6.6.2, and 6.7.0 are vulnerable.
&lt;br&gt;&lt;br&gt;4. Apple Safari Prior to 4.0 Multiple Security Vulnerabilities
&lt;br&gt;BugTraq ID: 35260
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-08
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35260&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35260&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple Safari is prone to multiple security vulnerabilities.
&lt;br&gt;&lt;br&gt;Attackers may exploit these issues to execute arbitrary code, launch cross-site scripting attacks,
&lt;br&gt;elevate privileges, or obtain sensitive information. Other attacks are also possible.
&lt;br&gt;&lt;br&gt;These issues affect versions prior to Safari 4.0 running on Apple Mac OS X 10.4.11 and 10.5.7,
&lt;br&gt;Microsoft Windows XP, and Windows Vista.
&lt;br&gt;&lt;br&gt;5. Microsoft Windows DNS Devolution Third-Level Domain Name Resolving Weakness
&lt;br&gt;BugTraq ID: 35255
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35255&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35255&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a weakness that affects the Windows DNS client and arises because of a
&lt;br&gt;design error in the DNS devolution process.
&lt;br&gt;&lt;br&gt;The attacker could set up a malicious site and carry out attacks against victims who are
&lt;br&gt;inadvertently directed to the malicious site. These attacks could include disclosure of the private
&lt;br&gt;IP address, disclosure of authentication credentials, modification of client proxy settings,
&lt;br&gt;phishing, redirection to other malicious sites, enticing vulnerable users to download malware, and more.
&lt;br&gt;&lt;br&gt;6. eBay Enhanced Picture Services ActiveX Control Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35248
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35248&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35248&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;eBay Enhanced Picture Services ActiveX control is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow attackers to execute arbitrary code within the context
&lt;br&gt;of the affected application that uses the ActiveX control (typically Internet Explorer). Failed
&lt;br&gt;exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;7. Microsoft Excel QSIR Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35246
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35246&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35246&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel
&lt;br&gt;('.xls') file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;8. Microsoft Excel Malformed Shared String Table Record Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35245
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35245&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35245&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to an integer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;9. Microsoft Excel Field Sanitization Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35244
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35244&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35244&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;10. Microsoft Excel String Copy Stack Overflow Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35243
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35243&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35243&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;11. Microsoft Excel Array Indexing Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35242
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35242&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35242&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;12. Microsoft Excel Record Object Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35241
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35241&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35241&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;13. Microsoft Windows Argument Validation Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35240
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35240&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35240&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a local privilege-escalation vulnerability that occurs in the Windows
&lt;br&gt;kernel.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with kernel-level privileges.
&lt;br&gt;Successful exploits will result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;14. XM Easy Personal FTP Server Multiple Command Remote Buffer Overflow Vulnerabilities
&lt;br&gt;BugTraq ID: 35239
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-05
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35239&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35239&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;XM Easy Personal FTP Server is prone to multiple remote buffer-overflow vulnerabilities because the
&lt;br&gt;application fails to sufficiently sanitize user-supplied arguments to multiple FTP commands.
&lt;br&gt;&lt;br&gt;An attacker can exploit these issues to execute arbitrary code in the context of the affected
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;XM Easy Personal FTP Server 5.7.0 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;15. Microsoft Windows Pointer Validation Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35238
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35238&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35238&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a local privilege-escalation vulnerability that occurs in the Windows
&lt;br&gt;kernel.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with kernel-level privileges.
&lt;br&gt;Successful exploits will result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;16. Microsoft Internet Explorer Malformed Row Property Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35235
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35235&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35235&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;17. Microsoft Internet Explorer 'onreadystatechange' Corrupt Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35234
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35234&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35234&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;18. Microsoft IIS 5.0 WebDAV Authentication Bypass Vulnerability
&lt;br&gt;BugTraq ID: 35232
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35232&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35232&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Information Services (IIS) is prone to an authentication-bypass vulnerability
&lt;br&gt;because it fails to properly enforce access restrictions on certain requests to a site that requires
&lt;br&gt;authentication.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to gain unauthorized access to protected resources, which may
&lt;br&gt;lead to other attacks.
&lt;br&gt;&lt;br&gt;This issue affects IIS 5.0.
&lt;br&gt;&lt;br&gt;19. Online Armor Personal Firewall IOCTL Request Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35227
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-04
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35227&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35227&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Online Armor Personal Firewall is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;An attacker may exploit this issue to execute arbitrary code with elevated privileges, which may
&lt;br&gt;facilitate a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;Online Armor Personal Firewall 3.5.0.12 and prior versions are affected. Online Armor Personal
&lt;br&gt;Firewall AV+ is also vulnerable.
&lt;br&gt;&lt;br&gt;20. Microsoft Active Directory Encoded LDAP String Memory Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35226
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35226&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35226&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Active Directory is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Successful exploits will completely compromise the affected computer. Failed attacks will cause
&lt;br&gt;denial-of-service conditions.
&lt;br&gt;&lt;br&gt;21. Microsoft Active Directory Memory Leak Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 35225
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35225&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35225&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Active Directory is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to crash the server, denying access to legitimate users.
&lt;br&gt;&lt;br&gt;22. Microsoft Internet Explorer Event Handler Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35224
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35224&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35224&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;23. Microsoft Internet Explorer 'setCapture()' Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35223
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35223&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35223&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;24. Microsoft Internet Explorer XMLHttpRequest Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35222
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35222&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35222&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;browser. Successful exploits will compromise the browser and possibly the computer. Failed attacks
&lt;br&gt;may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;25. Microsoft Windows Search Script Injection Vulnerability
&lt;br&gt;BugTraq ID: 35220
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35220&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35220&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows Search is prone to a script-injection vulnerability because it fails to adequately
&lt;br&gt;sanitize user-supplied input when previewing search results.
&lt;br&gt;&lt;br&gt;Successful exploits will cause malicious script code to run in the local context, allowing attackers
&lt;br&gt;to steal potentially sensitive information or perform other attacks.
&lt;br&gt;&lt;br&gt;The issue affects Windows Search installed on all supported editions of Windows XP and Windows
&lt;br&gt;Server 2003. Note that Windows Vista and Windows Server 2008 are not affected.
&lt;br&gt;&lt;br&gt;26. Microsoft RPC Marshalling Engine Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35219
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35219&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35219&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows RPC Marshalling Engine is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue by sending a specially crafted RPC request to an affected computer.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue will allow the attacker to execute arbitrary code with full
&lt;br&gt;system rights, completely compromising affected computers. Failed exploit attempts will likely
&lt;br&gt;result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;27. Microsoft Visual Studio 'MSCOMM32.OCX' ActiveX Control Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35218
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35218&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35218&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Visual Studio is prone to a remote heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
&lt;br&gt;&lt;br&gt;Successful exploits will allow attackers to execute arbitrary code within the context of the
&lt;br&gt;affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit
&lt;br&gt;attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;28. Microsoft Excel Record Pointer Corruption Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35215
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35215&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35215&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Excel is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers may exploit this issue by enticing victims into opening a maliciously crafted Excel file.
&lt;br&gt;&lt;br&gt;Successful exploits may allow attackers to execute arbitrary code with the privileges of the user
&lt;br&gt;running the application.
&lt;br&gt;&lt;br&gt;29. Microsoft June 2009 Advance Notification Multiple Vulnerabilities
&lt;br&gt;BugTraq ID: 35213
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-04
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35213&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35213&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft has released advance notification that on June 9, 2009 the vendor will be releasing 10
&lt;br&gt;security bulletins covering multiple issues. The highest severity rating for these issues is 'Critical'.
&lt;br&gt;&lt;br&gt;These issues affect the following:
&lt;br&gt;&lt;br&gt;Windows
&lt;br&gt;Internet Explorer
&lt;br&gt;Word
&lt;br&gt;Excel
&lt;br&gt;Office
&lt;br&gt;&lt;br&gt;Successfully exploiting these issues may allow remote or local attackers to compromise affected
&lt;br&gt;computers.
&lt;br&gt;&lt;br&gt;We will create individual records to better document these issues when the bulletins are released.
&lt;br&gt;&lt;br&gt;30. Microsoft Windows Print Spooler Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35209
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35209&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35209&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote code-execution vulnerability that affects the Print Spooler
&lt;br&gt;service.
&lt;br&gt;&lt;br&gt;A remote authenticated attacker can exploit this issue to execute arbitrary code with SYSTEM-level
&lt;br&gt;privileges, which can result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;31. Microsoft Windows Print Spooler Local Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35208
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35208&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35208&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows Messenger is prone to a local information-disclosure vulnerability that affects
&lt;br&gt;the Print Spooler service.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows attackers to obtain sensitive information that may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;32. Microsoft Windows Print Spooler 'EnumeratePrintShares()' Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35206
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35206&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35206&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Windows is prone to a remote stack-based buffer-overflow vulnerability that affects the
&lt;br&gt;Windows Print Spooler.
&lt;br&gt;&lt;br&gt;Exploiting this vulnerability allows attackers to execute arbitrary code with system-level
&lt;br&gt;privileges. Failed exploit attempts will likely cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;33. Microsoft Internet Explorer Cached Content Cross Domain Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35200
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35200&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35200&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a cross-domain information-disclosure vulnerability because
&lt;br&gt;the application fails to properly enforce the same-origin policy.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to access local files or content from a browser window in another
&lt;br&gt;domain or security zone. This may allow the attacker to obtain sensitive information or may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;34. Microsoft Internet Explorer (CVE-2009-1141) Uninitialized Memory Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35198
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35198&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35198&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Internet Explorer is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code in the context of the user running the
&lt;br&gt;application. Successful exploits will compromise the application and possibly the computer. Failed
&lt;br&gt;attacks may cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;35. Microsoft Word Record Parsing (CVE-2009-0565) Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35190
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35190&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35190&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Word is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;36. Microsoft Word Record Parsing Length Field Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35188
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35188&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35188&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Word is prone to a stack-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code in the context of the currently
&lt;br&gt;logged-in user. Failed exploit attempts will likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;37. Microsoft Office Works for Windows Document Converters Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35184
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-09
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35184&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35184&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft Office Works for Windows document converters are prone to a remote code-execution
&lt;br&gt;vulnerability because the application fails to properly handle specially crafted files.
&lt;br&gt;&lt;br&gt;An attacker could exploit this issue by enticing a victim to open a malicious '.wps' file.
&lt;br&gt;&lt;br&gt;Successful exploits would allow the attacker to execute arbitrary code in the context of the
&lt;br&gt;currently logged-in user.
&lt;br&gt;&lt;br&gt;38. Apple QuickTime PSD Image Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35168
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35168&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35168&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted image.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;39. Apple QuickTime Clipping Region (CRGN) Atom Types Heap Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35167
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35167&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35167&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista and Windows XP SP3.
&lt;br&gt;&lt;br&gt;40. Apple QuickTime Image Description Atom Sign Extension Vulnerability
&lt;br&gt;BugTraq ID: 35166
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35166&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35166&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a vulnerability that occurs because the bit width of a number is
&lt;br&gt;increased without changing its sign in certain image description atoms.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted Apple video file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;41. Apple QuickTime JP2 Image Handling Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35165
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35165&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35165&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;42. Apple QuickTime PICT Image Heap Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35164
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35164&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35164&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;43. Apple QuickTime MS ADPCM Audio File Heap Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35163
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35163&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35163&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially AVI
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;44. Apple QuickTime User Atom Data Size Uninitialized Memory Access Remote Code Execution Vulnerability
&lt;br&gt;BugTraq ID: 35162
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35162&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35162&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a remote code-execution vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;45. Apple QuickTime FLC Compression File Heap Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35161
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35161&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35161&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a heap-based buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;46. Apple QuickTime Sorenson 3 Video File Remote Memory Corruption Vulnerability
&lt;br&gt;BugTraq ID: 35159
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35159&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35159&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple QuickTime is prone to a memory-corruption vulnerability.
&lt;br&gt;&lt;br&gt;A remote attacker can exploit this issue by enticing an unsuspecting user to open a specially
&lt;br&gt;crafted file.
&lt;br&gt;&lt;br&gt;Successful exploits will allow the attacker to execute arbitrary code in the context of the user
&lt;br&gt;running the application. Failed exploit attempts likely result in denial-of-service conditions.
&lt;br&gt;&lt;br&gt;This issue affects Apple QuickTime running on Microsoft Windows Vista, Windows XP SP3, and Mac OS X.
&lt;br&gt;&lt;br&gt;47. Apple iTunes Multiple URI Handler Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35157
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35157&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35157&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Apple iTunes is prone to a stack-based buffer-overflow vulnerability because it fails to perform
&lt;br&gt;adequate boundary checks before copying user-supplied data to an insufficiently sized buffer.
&lt;br&gt;&lt;br&gt;Attackers can leverage this issue to execute arbitrary code with the privileges of the user running
&lt;br&gt;the affected application. Failed attacks will likely cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;48. SafeNet SoftRemote IKE Service Remote Stack Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35154
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-06-01
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35154&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35154&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;SafeNet SoftRemote is prone to a remote stack-based buffer-overflow vulnerability because it fails
&lt;br&gt;to properly bounds-check user-supplied data before copying it into an insufficiently sized memory
&lt;br&gt;buffer.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will result in the complete compromise of affected computers.
&lt;br&gt;Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;Versions prior to SoftRemote 10.8.6 are vulnerable.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24001255&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=24001255&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by VeriSign
&lt;br&gt;&lt;br&gt;VeriSign EV SSL Certificates for your sites. security turn the address bar in high security browsers
&lt;br&gt;green which helps your customers know they are safe on your site.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://ad.doubleclick.net/clk;215510119;37701656;z&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://ad.doubleclick.net/clk;215510119;37701656;z&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--445-tp24001255p24001255.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-23783001</id>
	<title>SecurityFocus Microsoft Newsletter #444</title>
	<published>2009-05-29T08:07:04Z</published>
	<updated>2009-05-29T08:07:04Z</updated>
	<author>
		<name>Rob Keith</name>
	</author>
	<content type="html">SecurityFocus Microsoft Newsletter #444
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;This issue is sponsored by Thawte
&lt;br&gt;&lt;br&gt;SExtended Validation SSL Certificates: Inspire Trust, Improve Confidence and Increase Sales
&lt;br&gt;&lt;br&gt;Extended Validation SSL delivers the acknowledged industry standard for the highest level of online
&lt;br&gt;identity assurance processes for SSL certificate issuance. Find out how the EV standard increases
&lt;br&gt;the visibility of authentication status through the use of a green address bar in the latest high
&lt;br&gt;security web browsers.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214c470a&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214c470a&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;SECURITY BLOGS
&lt;br&gt;SecurityFocus has selected a few syndicated sources that stand out as conveying topics of interest
&lt;br&gt;for our community. We are proud to offer content from Matasano at this time and will be adding more
&lt;br&gt;in the coming weeks.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/blogs&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/blogs&lt;/a&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------
&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1.A Botnet by Any Other Name
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.Projecting Borders into Cyberspace
&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. Microsoft DirectX DirectShow QuickTime Video Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. Citrix Password Manager Secondary Credentials Local Information Disclosure Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3. Simple Machines Forum 'image/bmp' MIME Type HTML Injection Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4. ImageMagick TIFF File Integer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5. Ston3D S3DPlayer Web and StandAlone 'system.openURL()' Remote Command Injection Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6. Multiple ArcaBit ArcaVir Products Multiple IOCTL Request Local Privilege Escalation
&lt;br&gt;Vulnerabilities
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7. SonicWALL Global Security Client Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;8. SonicWALL Global VPN Client 'RampartSvc' Local Privilege Escalation Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;9. Soulseek Distributed File Search Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;10. Wireshark PCNFSD Dissector Denial of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;11. Novell GroupWise Internet Agent SMTP Request Processing Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;12. Novell GroupWise Internet Agent Email Address Processing Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;13. Nullsoft Winamp 'gen_ff.dll' Buffer Overflow Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;14. CiscoWorks Common Services TFTP Server Directory Traversal Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;15. Mereo Malformed URI Remote Denial Of Service Vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;16. httpdx Multiple Commands Remote Buffer Overflow Vulnerabilities
&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;1. New Tech Tip: Configuring Windows 7 for a limited user
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2. AD Password complexity - passwords too long?
&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;&lt;br&gt;I. &amp;nbsp; FRONT AND CENTER
&lt;br&gt;---------------------
&lt;br&gt;1. A Botnet by Any Other Name
&lt;br&gt;By Gubter Ollmann
&lt;br&gt;The news has been awash the last few weeks with fears over globe-spanning botnets and their criminal
&lt;br&gt;intent: Conficker managed to hog the limelight for well over a month, and then came Finjan's
&lt;br&gt;disclosure of a previously unknown - and currently unnamed - botnet consisting of some 1.9 million
&lt;br&gt;malicious agents.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/501&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/501&lt;/a&gt;&lt;br&gt;&lt;br&gt;2.Projecting Borders into Cyberspace
&lt;br&gt;By Jeffrey Carr
&lt;br&gt;Two recent stories of significant cyber attacks come close to blaming the Chinese for the intrusions
&lt;br&gt;but stop short.
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/columnists/500&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/columnists/500&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;II. &amp;nbsp;MICROSOFT VULNERABILITY SUMMARY
&lt;br&gt;------------------------------------
&lt;br&gt;1. Microsoft DirectX DirectShow QuickTime Video Remote Code Execution &amp;nbsp;Vulnerability
&lt;br&gt;BugTraq ID: 35139
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-28
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35139&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35139&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Microsoft DirectX is prone to a remote code-execution vulnerability because the DirectShow component
&lt;br&gt;fails to properly handle QuickTime media files.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context
&lt;br&gt;of the user running the application that uses DirectX. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;2. Citrix Password Manager Secondary Credentials Local Information Disclosure Vulnerability
&lt;br&gt;BugTraq ID: 35133
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-05-27
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35133&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35133&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Citrix Password Manager is prone to a local information-disclosure vulnerability.
&lt;br&gt;&lt;br&gt;Exploiting this issue may allow a local attacker to obtain sensitive information that may aid in
&lt;br&gt;further attacks.
&lt;br&gt;&lt;br&gt;Versions prior to Password Manager 4.6 SP1 are vulnerable.
&lt;br&gt;&lt;br&gt;3. Simple Machines Forum 'image/bmp' MIME Type HTML Injection Vulnerability
&lt;br&gt;BugTraq ID: 35130
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-28
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35130&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35130&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Simple Machines Forum (SMF) is prone to an HTML-injection vulnerability because the application
&lt;br&gt;fails to properly sanitize user-supplied input.
&lt;br&gt;&lt;br&gt;Attacker-supplied HTML and script code would run in the context of the affected browser, potentially
&lt;br&gt;allowing the attacker to steal cookie-based authentication credentials or to control how the site is
&lt;br&gt;rendered to the user. Other attacks are also possible.
&lt;br&gt;&lt;br&gt;NOTE: This issue was originally documented as a cross-site scripting vulnerability. After further
&lt;br&gt;analysis, the BID has been rewritten as an HTML-injection issue.
&lt;br&gt;&lt;br&gt;4. ImageMagick TIFF File Integer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35111
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-27
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35111&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35111&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;ImageMagick is prone to an integer-overflow vulnerability because it fails to properly bounds-check
&lt;br&gt;user-supplied input. The vulnerability occurs when handling malformed TIFF files.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows attackers to execute arbitrary code with the privileges of
&lt;br&gt;a user running the application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;ImageMagick 6.5.2-8 is vulnerable; other versions may be affected as well.
&lt;br&gt;&lt;br&gt;5. Ston3D S3DPlayer Web and StandAlone 'system.openURL()' Remote Command Injection Vulnerability
&lt;br&gt;BugTraq ID: 35105
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-28
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35105&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35105&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;S3DPlayer Web and StandAlone are prone to a remote command-injection vulnerability because they fail
&lt;br&gt;to adequately sanitize user-supplied input data.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary commands, within the context of the affected
&lt;br&gt;application.
&lt;br&gt;&lt;br&gt;6. Multiple ArcaBit ArcaVir Products Multiple IOCTL Request Local Privilege Escalation Vulnerabilities
&lt;br&gt;BugTraq ID: 35100
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-05-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35100&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35100&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Multiple ArcaBit ArcaVir products are prone to multiple local privilege-escalation vulnerabilities
&lt;br&gt;that affect the 'ps_drv.sys' driver.
&lt;br&gt;&lt;br&gt;An attacker can exploit these issues to execute arbitrary code with elevated privileges,
&lt;br&gt;facilitating a complete compromise of the affected computer.
&lt;br&gt;&lt;br&gt;The following applications are vulnerable:
&lt;br&gt;&lt;br&gt;ArcaVir 2009 Antivirus Protection
&lt;br&gt;ArcaVir 2009 Internet Security
&lt;br&gt;ArcaVir 2009 System Protection
&lt;br&gt;ArcaVir 2009 Home Protection
&lt;br&gt;&lt;br&gt;7. SonicWALL Global Security Client Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35094
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-05-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35094&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35094&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;SonicWALL Global Security Client is prone to a local privilege-escalation vulnerability because the
&lt;br&gt;application fails to perform adequate boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
&lt;br&gt;Successfully exploiting this issue will result in the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;Global Security Client 1.0.0.15 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;8. SonicWALL Global VPN Client 'RampartSvc' Local Privilege Escalation Vulnerability
&lt;br&gt;BugTraq ID: 35092
&lt;br&gt;Remote: No
&lt;br&gt;Date Published: 2009-05-26
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35092&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35092&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;SonicWALL Global VPN Client is prone to a local privilege-escalation vulnerability.
&lt;br&gt;&lt;br&gt;Successfully exploiting this issue allows local users to execute arbitrary code with LocalSystem
&lt;br&gt;privileges, facilitating the complete compromise of affected computers.
&lt;br&gt;&lt;br&gt;Global VPN Client 4.0.0.835 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;9. Soulseek Distributed File Search Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35091
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-25
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35091&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35091&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Soulseek is prone to a stack-based buffer-overflow vulnerability because the application fails to
&lt;br&gt;perform adequate boundary checks on user-supplied data.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to execute arbitrary code within the context of the affected
&lt;br&gt;application. Failed exploit attempt will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;Soulseek 156 and 157 NS are vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;10. Wireshark PCNFSD Dissector Denial of Service Vulnerability
&lt;br&gt;BugTraq ID: 35081
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-21
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35081&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35081&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Wireshark is prone to a denial-of-service vulnerability.
&lt;br&gt;&lt;br&gt;Exploiting this issue may allow attackers to cause the application to crash.
&lt;br&gt;&lt;br&gt;This issue affects Wireshark 0.8.20 through 1.0.7.
&lt;br&gt;&lt;br&gt;11. Novell GroupWise Internet Agent SMTP Request Processing Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35065
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-21
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35065&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35065&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Novell GroupWise Internet Agent is prone to a remote buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the affected
&lt;br&gt;application, possibly with root or SYSTEM-level privileges. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;12. Novell GroupWise Internet Agent Email Address Processing Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35064
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-21
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35064&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35064&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Novell GroupWise Internet Agent is prone to a remote buffer-overflow vulnerability.
&lt;br&gt;&lt;br&gt;An attacker can exploit this issue to execute arbitrary code within the context of the affected
&lt;br&gt;application, possibly with root or SYSTEM-level privileges. Failed exploit attempts will result in a
&lt;br&gt;denial-of-service condition.
&lt;br&gt;&lt;br&gt;13. Nullsoft Winamp 'gen_ff.dll' Buffer Overflow Vulnerability
&lt;br&gt;BugTraq ID: 35052
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-20
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35052&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35052&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Nullsoft Winamp is prone to a buffer-overflow vulnerability because the application fails to perform
&lt;br&gt;adequate boundary checks on user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers may leverage this issue to execute arbitrary code in the context of the application.
&lt;br&gt;Failed attacks will cause denial-of-service conditions.
&lt;br&gt;&lt;br&gt;Winamp 5.55 and prior versions are vulnerable.
&lt;br&gt;&lt;br&gt;14. CiscoWorks Common Services TFTP Server Directory Traversal Vulnerability
&lt;br&gt;BugTraq ID: 35040
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-20
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35040&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35040&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;CiscoWorks Common Services TFTP Server is prone to a directory-traversal vulnerability because it
&lt;br&gt;fails to sufficiently sanitize user-supplied input.
&lt;br&gt;&lt;br&gt;Exploiting this issue can allow an attacker to upload and download arbitrary files outside of the
&lt;br&gt;TFTP server root directory. This may result in a denial-of-service condition or lead to a complete
&lt;br&gt;compromise of the affected computer.
&lt;br&gt;&lt;br&gt;This issue is tracked by Cisco Bug ID CSCsx07107.
&lt;br&gt;&lt;br&gt;CiscoWorks Common Services 3.0.x, 3.1.x, and 3.2.x running on Microsoft Windows are vulnerable.
&lt;br&gt;&lt;br&gt;15. Mereo Malformed URI Remote Denial Of Service Vulnerability
&lt;br&gt;BugTraq ID: 35014
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-18
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35014&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35014&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;Mereo is prone to a denial-of-service vulnerability because it fails to adequately sanitize
&lt;br&gt;user-supplied input.
&lt;br&gt;&lt;br&gt;Attackers can exploit this issue to crash the affected application, denying service to legitimate
&lt;br&gt;users.
&lt;br&gt;&lt;br&gt;Mereo 1.8.0 is vulnerable; other versions may also be affected.
&lt;br&gt;&lt;br&gt;16. httpdx Multiple Commands Remote Buffer Overflow Vulnerabilities
&lt;br&gt;BugTraq ID: 35006
&lt;br&gt;Remote: Yes
&lt;br&gt;Date Published: 2009-05-18
&lt;br&gt;Relevant URL: &lt;a href=&quot;http://www.securityfocus.com/bid/35006&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/bid/35006&lt;/a&gt;&lt;br&gt;Summary:
&lt;br&gt;The 'httpdx' program is prone to multiple remote buffer-overflow vulnerabilities because the
&lt;br&gt;application fails to perform adequate boundary-checks on user-supplied data.
&lt;br&gt;&lt;br&gt;An attacker can exploit these issues to execute arbitrary code within the context of the affected
&lt;br&gt;application. Failed exploit attempts will result in a denial-of-service condition.
&lt;br&gt;&lt;br&gt;These issues affect httpdx 0.5b; other versions may also be affected.
&lt;br&gt;&lt;br&gt;III. MICROSOFT FOCUS LIST SUMMARY
&lt;br&gt;---------------------------------
&lt;br&gt;1. New Tech Tip: Configuring Windows 7 for a limited user
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/archive/88/503884&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/archive/88/503884&lt;/a&gt;&lt;br&gt;&lt;br&gt;2. AD Password complexity - passwords too long?
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/archive/88/503573&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/archive/88/503573&lt;/a&gt;&lt;br&gt;&lt;br&gt;IV. &amp;nbsp;UNSUBSCRIBE INSTRUCTIONS
&lt;br&gt;-----------------------------
&lt;br&gt;To unsubscribe send an e-mail message to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=23783001&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ms-secnews-unsubscribe@...&lt;/a&gt; from the
&lt;br&gt;subscribed address. The contents of the subject or message body do not matter. You will receive a
&lt;br&gt;confirmation request message to which you will have to answer. Alternatively you can also visit
&lt;br&gt;&lt;a href=&quot;http://www.securityfocus.com/newsletters&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/newsletters&lt;/a&gt;&amp;nbsp;and unsubscribe via the website.
&lt;br&gt;&lt;br&gt;If your email address has changed email &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=23783001&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listadmin@...&lt;/a&gt; and ask to be manually removed.
&lt;br&gt;&lt;br&gt;V. &amp;nbsp; SPONSOR INFORMATION
&lt;br&gt;------------------------
&lt;br&gt;This issue is sponsored by Thawte
&lt;br&gt;&lt;br&gt;SExtended Validation SSL Certificates: Inspire Trust, Improve Confidence and Increase Sales
&lt;br&gt;&lt;br&gt;Extended Validation SSL delivers the acknowledged industry standard for the highest level of online
&lt;br&gt;identity assurance processes for SSL certificate issuance. Find out how the EV standard increases
&lt;br&gt;the visibility of authentication status through the use of a green address bar in the latest high
&lt;br&gt;security web browsers.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214c470a&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214c470a&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SecurityFocus-Microsoft-Newsletter--444-tp23783001p23783001.html" />
</entry>

</feed>
