copyright | disclaimer | privacy | contact  
Australia's Leading Computer Emergency Response Team
 
Search this site

 
On this site

 > HOME
 > About AusCERT
 > Membership
 > Contact Us
 > PKI Services
 > Training
 > Publications
 > Sec. Bulletins
 > Conferences
 > News & Media
 > Services
 > Web Log
 > Site Map
 > Site Help
 > Member login





 

AusCERT Week in Review for 6th January 2012

Date: 06 January 2012

Click here for printable version

Greetings and a Happy New Year!

This week somebody set up us the bomb of post-Christmas bulletins.

A couple of noteworthy nasties included an actively exploited root compromise of the telnet daemon in krb5 (Kerberos) as well as hash collision weaknesses in a number of web programming languages. The latter prompted Microsoft to release an out-of-band bulletin for the .NET Framework.

The release of WordPress 3.3.1 addressed a cross-site scripting vulnerability, and HP provided code signing firmware for the remote firmware update bug.

Finally, beware of emails prompting you to install 2012 Anti-virus or PDF software!

Have a good one,
Olivia