Vendors/Products - Page 32

We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.

Discover Vendors/Products News

Mozilla re-patches Firefox 3.6 to fix plug-in problem

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

For the second time in two months, Mozilla on Friday rushed out a fix for Firefox to patch a problem with a browser update issued just days before. Mozilla shipped Firefox 3.6.8 on Friday to patch a single security problem and deal with what Mike Beltzner, director of Firefox, called "a stability problem that affected some pages with embedded plug-ins."

Mozilla Releases Firefox 4 Beta

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Mozilla Foundation has released an early beta of the upcoming version 4 of Firefox, its flagship cross-platform browser for Windows, OS X, and Linux. The long-awaited release introduces a number of improvements and additions over previous versions of Firefox. Firefox 3 came out two years ago, while version 3.5 of the Web browser debuted in 2009.

Mozilla tweaks new plug-in protection

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Mozilla pushed out a minor update to Firefox on Saturday, slightly adjusting the new plug-in crash protection feature that was introduced last week. Firefox 3.6.6 for Windows and Linux delays the amount of time that the plug-in protection module will wait before terminating an unresponsive plug-in.

Dell u-turns on Ubuntu security

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Last week, we commented on the fact that Dell was hyping up the Linix distribution Ubuntu on its web site, much to the detriment of Microsoft's Windows. Dell was proud of the fact it has been flogging Ubuntu-equipped machines since 2007 and we can only assume it makes more margin on such machines since it doesn't have to pay Microsoft its Windows tax.

Ubuntu 'more secure' than Windows, says Dell

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Dell reckons Ubuntu offers more protection than Windows online as it convinces consumer PC shoppers they shouldn't be scared of Linux. In a statement flagged here by TheVarGuy.com, Dell picked on security as one of ten reasons why people should buy PCs running Canonical's Linux rather than Microsoft's operating system.

Zero-day vulnerability in Adobe Flash Player, Reader and Acrobat

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

According to a security advisory from Adobe, there is a critical vulnerability in Flash Player 10.0.45.2 (and earlier versions) and in the authplay.dll component that ships with Adobe Reader and Acrobat 9.0; Windows, Mac OS X, Unix and Linux versions are all vulnerable. Attackers can exploit the hole to crash the software or gain control of the system and there are already reports of exploitation in the wild for all three products.

Google's WebM license could undermine the meaning of 'open source'

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

As Apple and Adobe sparred over the inclusion of Flash in the iPhone OS, supporters of the emerging HTML5 standard -- including Apple, Google, and Microsoft -- touted the H.264 video codec specified in HTML5 as a reason that Flash is unnecessary. But H.264 is proprietary technology that requires a license for use and redistribution, which effectively means Mozilla can't adopt it for the open source Firefox browser.

ClamAV 0.96.1 fixes DoS vulnerabilities

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Version 0.96.1 of ClamAV, the free and open source toolkit, fixes bugs which cause it to crash when faced with crafted PDF and PE files. Attackers had been able to exploit these vulnerabilities to disrupt network operation, allowing them to disable web proxies or mail gateways, for example.

Symantec confirms VeriSign deal

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

In case your boss ever questions whether security is big business... Symantec will pay US$1.28 billion to acquire VeriSign's security business. The two companies confirmed the rumored acquisition, saying it would give VeriSign the opportunity to focus on its more-profitable domain name business, while allowing Symantec to broaden its growing portfolio of enterprise security products. l.

Samba update fixes DoS vulnerabilities

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Released last week, version 3.4.8 of the free Samba file and print server fixes various holes including two denial of service (DoS) vulnerabilities which allow attackers to remotely crash the Smbd service. One of the problems is caused by a null pointer dereference when processing a certain series of SMB headers that include a specific combination of flags.