iTunes < 6.0.5 vulnerability & patch released
http://docs.info.apple.com
APPLE-SA-2006-06-29 iTunes 6.0.5
iTunes 6.0.5 is now available and, in addition to its other content,
fixes the following security issue:
CVE-ID: CVE-2006-1467
Available for: Mac OS X v10.2.8 or later, Windows XP / 2000
Impact: An integer overflow in iTunes could cause a denial of
service or lead to the execution of arbitrary code
Description: The AAC file parsing code in iTunes versions prior
to 6.0.5 contains an integer overflow vulnerability. Parsing a
maliciously-crafted AAC file could cause iTunes to terminate or
potentially execute arbitrary code. iTunes 6.0.5 addresses this
issue by improving the validation checks used when loading AAC
files. Credit to ATmaCA working with TippingPoint and the Zero Day
Initiative for reporting this issue.
Deja Vu - Advances in Rootkit malware
Another interesting recent discussion on improved rootkits from Joanna Rutkowska. I can't wait for her to release this. The comparison to SubVirt is key. BluePill on InvisibleThings
-toby
Cisco Wireless Access Point Vulnerability Announced
Cisco has released a vulnerability disclosure for their Wireless Access Points:
http://www.cisco.com/warp
The vuln is in the web interface for the APs and could allow wiping of the security config and access to the administrative interface without authentication.
To quote Cisco:
A vulnerability exists in the access point web-browser interface when Security > Admin Access is changed from Default Authentication (Global Password) to Local User List Only (Individual Passwords). This results in the access point being re-configured with no security, either Global Password or Individual Passwords, enabled. This allows for open access to the access point via the web-browser interface or via the console port with no validation of user credentials.
The following access points are affected if running Cisco IOS® Software Release 12.3(8)JA or 12.3(8)JA1 and are configured for web-interface management:
-
350 Wireless Access Point and Wireless Bridge
-
1100 Wireless Access Point
-
1130 Wireless Access Point
-
1200 Wireless Access Point
-
1240 Wireless Access Point
-
1310 Wireless Bridge
- 1410 Wireless Access Point
Comments