|
Bugtraq
mailing list archives
New Allaire Security Zone Bulletins Posted
From: Aleph One <aleph1 () UNDERGROUND ORG>
Date: Wed, 1 Nov 2000 15:00:03 -0800
Dear Allaire Customer --
New security issues that may affect Allaire customers have recently come to our attention. Please visit the Security
Zone at the Allaire Web site to learn about these new issues and what actions you can take to address them:
http://www.allaire.com/security
This week we posted the following new Allaire Security Bulletins:
ADDED:
ASB00-30: JRun 3.0: Patch available for "multiple .'s denial of service" issue
Affects:
JRun 3.0 (all editions)
JRun 3.0 SP1 (all editions)
ASB00-31: Microsoft (MS00-080): Patch Available for "Session ID Cookie Marking" Vulnerability
Affects:
Microsoft Internet Information Server 4.0
Microsoft Internet Information Services 5.0
As a Web application platform vendor, one of our highest concerns is the security of the systems our customers deploy.
We understand how important security is to our customers, and we're committed to providing the technology and
information customers need to build secure Web applications. Thank you for your time and consideration on this issue.
-- Security Response Team, Allaire Corporation
P.S. As a reminder, Allaire has set up an email address that customers can use to report security issues associated
with an Allaire product: secure () allaire com
======================================================================================
Allaire respects the Web and the privacy of those who use it. If you do not
want to receive any future messages from Allaire please forward this email to
remove () allaire com with the subject "REMOVE".
======================================================================================
By Date
By Thread
Current thread:
- New Allaire Security Zone Bulletins Posted Aleph One (Nov 03)
|