<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>CERT Advisories</title>
    <link>http://seclists.org/#cert</link>
    <atom:link href="http://seclists.org/rss/cert.rss" rel="self" type="application/rss+xml" />
    <language>en-us</language>
    <description>The &lt;a href=&quot;http://www.cert.org/&quot;&gt;Computer Emergency Response Team&lt;/a&gt; has been responding to security incidents and sharing vulnerability information since the Morris Worm hit in 1986. This archive combines their technical security alerts, tips, and current activity lists.</description>
    <pubDate>Wed, 16 May 2012 15:45:06 GMT</pubDate>
    <lastBuildDate>Wed, 16 May 2012 15:45:06 GMT</lastBuildDate>
<!-- MHonArc v2.6.16 -->

 

  <item>
    <title>Current Activity - Apple Releases QuickTime 7.7.2</title>
    <link>http://seclists.org/cert/2012/63</link>
    <description>&lt;p&gt;Posted by Current Activity on May 16&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Apple Releases QuickTime 7.7.2&lt;br&gt;
&lt;br&gt;
Original release date: Wednesday, May 16, 2012 at 10:23 am&lt;br&gt;
Last revised: Wednesday, May 16, 2012 at 10:23 am&lt;br&gt;
&lt;br&gt;
Apple has released QuickTime 7.7.2 to address multiple vulnerabilities.&lt;br&gt;
These vulnerabilities may allow an attacker to execute arbitrary code or&lt;br&gt;
cause a denial-of-service condition.&lt;br&gt;
&lt;br&gt;
US-CERT encourages users and administrators to review Apple Support&lt;br&gt;
Article HT5261 and apply any...&lt;br&gt;</description>
    <pubDate>Wed, 16 May 2012 15:38:39 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/63</guid>
  </item>


  <item>
    <title>Current Activity - Google Releases Google Chrome 19</title>
    <link>http://seclists.org/cert/2012/62</link>
    <description>&lt;p&gt;Posted by Current Activity on May 15&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Google Releases Google Chrome 19&lt;br&gt;
&lt;br&gt;
Original release date: Tuesday, May 15, 2012 at 2:13 pm&lt;br&gt;
Last revised: Tuesday, May 15, 2012 at 2:13 pm&lt;br&gt;
&lt;br&gt;
Google has released Google Chrome 19 for Linux, Mac, Windows, and Chrome&lt;br&gt;
Frame to address multiple vulnerabilities. These vulnerabilities may&lt;br&gt;
allow an attacker to execute arbitrary code or cause a denial-of-service&lt;br&gt;
condition.&lt;br&gt;
&lt;br&gt;
US-CERT encourages users and administrators to review the...&lt;br&gt;</description>
    <pubDate>Tue, 15 May 2012 19:09:37 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/62</guid>
  </item>


  <item>
    <title>Current Activity - Apple Releases Multiple Security Updates</title>
    <link>http://seclists.org/cert/2012/61</link>
    <description>&lt;p&gt;Posted by Current Activity on May 10&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Apple Releases Multiple Security Updates&lt;br&gt;
&lt;br&gt;
Original release date: Thursday, May 10, 2012 at 2:30 pm&lt;br&gt;
Last revised: Thursday, May 10, 2012 at 2:30 pm&lt;br&gt;
&lt;br&gt;
Apple has released security updates for Apple OS X and Safari to address&lt;br&gt;
multiple vulnerabilities for the following products:&lt;br&gt;
&lt;br&gt;
 * Safari 5.1.7 for Mac OS X v10.6.8, Mac OS X Server v10.6.8, OS X Lion&lt;br&gt;
Server v10.7.4, OS X Lion v10.7.4, Windows 7, Vista, XP SP2 or later&lt;br&gt;
 * OS X...&lt;br&gt;</description>
    <pubDate>Thu, 10 May 2012 19:18:15 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/61</guid>
  </item>


  <item>
    <title>Alert TA12-129A -- Microsoft Updates for Multiple Vulnerabilities</title>
    <link>http://seclists.org/cert/2012/60</link>
    <description>&lt;p&gt;Posted by US-CERT Alerts on May 08&lt;/p&gt;                    National Cyber Alert System&lt;br&gt;
&lt;br&gt;
              Technical Cyber Security Alert TA12-129A&lt;br&gt;
&lt;br&gt;
Microsoft Updates for Multiple Vulnerabilities&lt;br&gt;
&lt;br&gt;
   Original release date: May 08, 2012&lt;br&gt;
   Last revised: --&lt;br&gt;
   Source: US-CERT&lt;br&gt;
&lt;br&gt;
Systems Affected&lt;br&gt;
&lt;br&gt;
     * Microsoft Windows&lt;br&gt;
     * Microsoft .NET Framework&lt;br&gt;
     * Microsoft Office&lt;br&gt;
     * Microsoft Silverlight&lt;br&gt;
&lt;br&gt;
Overview&lt;br&gt;
&lt;br&gt;
   Select Microsoft software products contain multiple&lt;br&gt;
   vulnerabilities....&lt;br&gt;</description>
    <pubDate>Wed, 09 May 2012 01:22:07 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/60</guid>
  </item>


  <item>
    <title>Current Activity - Microsoft Releases May Security Bulletin</title>
    <link>http://seclists.org/cert/2012/59</link>
    <description>&lt;p&gt;Posted by Current Activity on May 08&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Microsoft Releases May Security Bulletin&lt;br&gt;
&lt;br&gt;
Original release date: Tuesday, May 8, 2012 at 03:38 pm&lt;br&gt;
Last revised: Tuesday, May 8, 2012 at 03:38 pm&lt;br&gt;
&lt;br&gt;
Microsoft has released updates to address vulnerabilities in Microsoft&lt;br&gt;
Windows, Office, .NET Framework, and Silverlight as part of the&lt;br&gt;
Microsoft Security Bulletin Summary for May 2012. These vulnerabilities&lt;br&gt;
may allow an attacker to execute arbitrary code or operate with...&lt;br&gt;</description>
    <pubDate>Tue, 08 May 2012 19:50:54 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/59</guid>
  </item>


  <item>
    <title>Current Activity - Adobe Releases Security Advisory for Adobe Flash Player</title>
    <link>http://seclists.org/cert/2012/58</link>
    <description>&lt;p&gt;Posted by Current Activity on May 04&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Adobe Releases Security Advisory for Adobe Flash Player&lt;br&gt;
&lt;br&gt;
Original release date: Friday, May 4, 2012 at 11:06 am&lt;br&gt;
Last revised: Friday, May 4, 2012 at 11:06 am&lt;br&gt;
&lt;br&gt;
Adobe has released a Security Advisory for Adobe Flash Player to address&lt;br&gt;
a vulnerability affecting the following software versions:&lt;br&gt;
&lt;br&gt;
 * Adobe Flash Player 11.2.202.233 and earlier versions for Windows,&lt;br&gt;
Macintosh, and Linux operating systems * Adobe Flash Player...&lt;br&gt;</description>
    <pubDate>Fri, 04 May 2012 15:40:07 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/58</guid>
  </item>


  <item>
    <title>Current Activity - Microsoft Releases Advance Notification for May Security Bulletin</title>
    <link>http://seclists.org/cert/2012/57</link>
    <description>&lt;p&gt;Posted by Current Activity on May 03&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Microsoft Releases Advance Notification for May Security Bulletin&lt;br&gt;
&lt;br&gt;
Original release date: Thursday, May 3, 2012 at 03:49 pm&lt;br&gt;
Last revised: Thursday, May 3, 2012 at 03:49 pm&lt;br&gt;
&lt;br&gt;
Microsoft has issued a Security Bulletin Advance Notification indicating&lt;br&gt;
that its May release will contain seven bulletins. These bulletins will&lt;br&gt;
have the severity ratings of critical and important and will be for&lt;br&gt;
Microsoft Windows, Office, .NET...&lt;br&gt;</description>
    <pubDate>Thu, 03 May 2012 20:23:22 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/57</guid>
  </item>


  <item>
    <title>Current Activity - Google Releases Chrome 18.0.1025.168</title>
    <link>http://seclists.org/cert/2012/56</link>
    <description>&lt;p&gt;Posted by Current Activity on May 01&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Google Releases Chrome 18.0.1025.168&lt;br&gt;
&lt;br&gt;
Original release date: Tuesday, May 1, 2012 at 09:58 am&lt;br&gt;
Last revised: Tuesday, May 1, 2012 at 09:58 am&lt;br&gt;
&lt;br&gt;
Google has released Chrome 18.0.1025.168 for Linux, Macintosh, Windows,&lt;br&gt;
and Google Chrome Frame to address multiple vulnerabilities. These&lt;br&gt;
vulnerabilities may allow an attacker to execute arbitrary code or cause&lt;br&gt;
a denial-of-service condition.&lt;br&gt;
&lt;br&gt;
US-CERT encourages users and...&lt;br&gt;</description>
    <pubDate>Tue, 01 May 2012 14:47:27 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/56</guid>
  </item>


  <item>
    <title>Current Activity - RuggedCom Rugged Operating System Vulnerability</title>
    <link>http://seclists.org/cert/2012/55</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 24&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
RuggedCom Rugged Operating System Vulnerability&lt;br&gt;
&lt;br&gt;
Original release date: Tuesday, April 24, 2012 at 4:14 pm&lt;br&gt;
Last revised: Tuesday, April 24, 2012 at 4:14 pm&lt;br&gt;
&lt;br&gt;
RuggedCom Rugged Operating System (ROS), used in RuggedCom network&lt;br&gt;
infrastructure devices, contains a hard-coded user account with a&lt;br&gt;
predictable password.&lt;br&gt;
&lt;br&gt;
This user account cannot be manually disabled. An attacker who&lt;br&gt;
successfully guesses the password may be able to...&lt;br&gt;</description>
    <pubDate>Tue, 24 Apr 2012 20:42:48 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/55</guid>
  </item>
  <item>
    <title>Current Activity - DNSChanger Malware</title>
    <link>http://seclists.org/cert/2012/54</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 24&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
DNSChanger Malware&lt;br&gt;
&lt;br&gt;
Original release date: Tuesday, April 24, 2012 at 2:20 pm&lt;br&gt;
Last revised: Tuesday, April 24, 2012 at 2:20 pm&lt;br&gt;
&lt;br&gt;
US-CERT encourages users and administrators to ensure their systems are&lt;br&gt;
not infected with the DNSChanger malware by utilizing tools and&lt;br&gt;
resources available at the DNS Changer Working Group (DCWG) website.&lt;br&gt;
Computers testing positive for infection of DNSChanger malware will need&lt;br&gt;
to be cleaned of...&lt;br&gt;</description>
    <pubDate>Tue, 24 Apr 2012 18:47:37 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/54</guid>
  </item>


  <item>
    <title>Current Activity - Oracle Releases Critical Patch Update for April 2012</title>
    <link>http://seclists.org/cert/2012/53</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 18&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Oracle Releases Critical Patch Update for April 2012&lt;br&gt;
&lt;br&gt;
Original release date: Wednesday, April 18, 2012 at 9:55 am&lt;br&gt;
Last revised: Wednesday, April 18, 2012 at 9:55 am&lt;br&gt;
&lt;br&gt;
Oracle has released its Critical Patch Update for April 2012 to address&lt;br&gt;
88 vulnerabilities across multiple products. This updates contains the&lt;br&gt;
following security fixes:&lt;br&gt;
&lt;br&gt;
 * 6 for Oracle Database Server * 11 for Oracle Fusion Middleware * 6&lt;br&gt;
for Oracle...&lt;br&gt;</description>
    <pubDate>Wed, 18 Apr 2012 15:09:47 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/53</guid>
  </item>


  <item>
    <title>Current Activity - Apple Releases Flashback Malware Security Updates</title>
    <link>http://seclists.org/cert/2012/52</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 16&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Apple Releases Flashback Malware Security Updates&lt;br&gt;
&lt;br&gt;
Original release date: Monday, April 16, 2012 at 3:11 pm&lt;br&gt;
Last revised: Monday, April 16, 2012 at 3:11 pm&lt;br&gt;
&lt;br&gt;
Apple has released security updates to address Flashback malware in the&lt;br&gt;
following products:&lt;br&gt;
&lt;br&gt;
 * OS X Lion v10.7.3 * OS X Lion Server v10.7.3 * Mac OS X v10.6.8 * Mac&lt;br&gt;
OS X Server v10.6.8&lt;br&gt;
&lt;br&gt;
Apple has released a malware removal tool for the most common variant of&lt;br&gt;
the...&lt;br&gt;</description>
    <pubDate>Mon, 16 Apr 2012 21:12:16 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/52</guid>
  </item>


  <item>
    <title>Current Activity - HP ProCurve 5400 zl Switches Security Bulletin</title>
    <link>http://seclists.org/cert/2012/51</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 12&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
HP ProCurve 5400 zl Switches Security Bulletin&lt;br&gt;
&lt;br&gt;
Original release date: Thursday, April 12, 2012 at 2:51 pm&lt;br&gt;
Last revised: Thursday, April 12, 2012 at 2:51 pm&lt;br&gt;
&lt;br&gt;
Hewlett-Packard (HP) has released a security bulletin to address a&lt;br&gt;
security vulnerability affecting HP 5400 zl series switches purchased&lt;br&gt;
after April 30, 2011. These switches contain a compact flash card that&lt;br&gt;
may be infected with malware.&lt;br&gt;
&lt;br&gt;
US-CERT encourages users...&lt;br&gt;</description>
    <pubDate>Thu, 12 Apr 2012 19:22:32 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/51</guid>
  </item>


  <item>
    <title>Current Activity - Samba Releases Updates for 3.0.x - 3.6.3</title>
    <link>http://seclists.org/cert/2012/50</link>
    <description>&lt;p&gt;Posted by Current Activity on Apr 11&lt;/p&gt;US-CERT Current Activity&lt;br&gt;
&lt;br&gt;
Samba Releases Updates for 3.0.x - 3.6.3&lt;br&gt;
&lt;br&gt;
Original release date: Wednesday, April 11, 2012 at 11:00 am&lt;br&gt;
Last revised: Wednesday, April 11, 2012 at 11:00 am&lt;br&gt;
&lt;br&gt;
Samba has released an update to address a vulnerability in Samba&lt;br&gt;
versions 3.6.3 and all previous versions. Exploitation of this&lt;br&gt;
vulnerability may allow a remote attacker to use anonymous connections&lt;br&gt;
to execute arbitrary code with root privileges.&lt;br&gt;
&lt;br&gt;
US-CERT encourages...&lt;br&gt;</description>
    <pubDate>Wed, 11 Apr 2012 18:06:51 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/50</guid>
  </item>
  <item>
    <title>Alert TA12-101B -- Adobe Reader and Acrobat Security Updates and Architectural Improvements</title>
    <link>http://seclists.org/cert/2012/49</link>
    <description>&lt;p&gt;Posted by US-CERT Alerts on Apr 11&lt;/p&gt;                    National Cyber Awareness System&lt;br&gt;
&lt;br&gt;
              Technical Cyber Security Alert TA12-101B&lt;br&gt;
&lt;br&gt;
Adobe Reader and Acrobat Security Updates and Architectural Improvements&lt;br&gt;
&lt;br&gt;
   Original release date: April 10, 2012&lt;br&gt;
   Last revised: --&lt;br&gt;
   Source: US-CERT&lt;br&gt;
&lt;br&gt;
Systems Affected&lt;br&gt;
&lt;br&gt;
  * Adobe Reader X (10.1.2) and earlier 10.x versions for Windows and Macintosh&lt;br&gt;
  * Adobe Reader 9.5 and earlier 9.x versions for Windows, Macintosh, and UNIX&lt;br&gt;
  * Adobe...&lt;br&gt;</description>
    <pubDate>Wed, 11 Apr 2012 07:45:05 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/cert/2012/49</guid>
  </item>

 

<!-- MHonArc v2.6.16 -->
  </channel>
</rss>

