Email Alerts
-
Oracle releases 45 database, application fixes
Oracle released updates to repair dozens of flaws across its product line as part of its quarterly Critical Patch Update. Article | 15 Jul 2008
-
Microsoft issues DNS, SQL Server updates
Four security bulletins address a DNS server spoofing vulnerability and a flaw in SQL Server that could allow an elevation of privilege of an authenticated attacker. Article | 08 Jul 2008
-
Inside MSRC: Microsoft issues guidance on DNS server update
Microsoft's Bill Sisk of the Microsoft Security Response Center said the DNS client and server updates should be applied carefully to avoid impairing the operating system. Column | 08 Jul 2008
-
Microsoft to issue Windows, SQL Server updates
Microsoft said it would repair vulnerabilities in SQL Server and Windows that could allow an elevation of privilege, spoofing and remote code execution. Article | 07 Jul 2008
-
Researchers defend study on patch distribution insecurities
A team of security researchers warn that a patch-based exploit generation technique could be easily carried out by an attacker. Article | 24 Jun 2008
-
Microsoft patches Bluetooth, Internet Explorer flaws
Dangerous holes in the Bluetooth stack in Windows could allow remote code execution. Article | 10 Jun 2008
-
Microsoft Jet Database Engine update could be issue for admins
Deploying the updates for the Microsoft Jet Database Engine could be tricky for companies with homegrown applications. Experts are warning users to test those patches first. Article | 15 May 2008
-
Inside MSRC: Microsoft explains Word, Publisher flaws
Security patching programs are not much different than racquetball games, says Microsoft's Bill Sisk. It's all about devising a strategy early to maintain control. Column | 13 May 2008
-
Researchers warily watch for Microsoft GDI exploits
Symantec, US-CERT and other security organizations are tracking attempts to exploit the GDI flaw Microsoft addressed last week in its MS08-021 patch bulletin. Article | 16 Apr 2008
-
Oracle fixes 41 flaws in April CPU
Attackers could exploit several Oracle flaws to compromise the confidentiality and integrity of targeted systems, Symantec said hours after Oracle's April 2008 CPU was released. Article | 16 Apr 2008
Security Management Strategies for the CIO