RSA patches major vulnerability

By
Follow google news

RSA has issued an unexpected patch to plug a hole in its web application tool.

A boundary error in the RSA Authentication Agent for Web affects IIS version 5.x.


Security and vulnerability group Secunia has released an advisory suggesting hackers could create a heap-based buffer overflow.

Alongside the RSA vulnerability equally dangerous, executable vulnerabilities has been found in Ethereal, a packet sniffing program. Both vulnerabilities, as well as one within Smail, a minor MTA, are rated critical.

The news come two days after Microsoft released a single patch in its monthly patch cycle. The script injection vulnerability was rated as "important" and affects Windows 98, 2000 and ME users only.

In March SC reported Microsoft released eight security patches, at least half of which were rated critical.

In the same month SC reported Microsoft's major OS update, SP2 for Windows XP, was being rejected by over half of companies.

www.rsa.com
www.microsoft.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

WhatsApp unveils high-security mode

WhatsApp unveils high-security mode

NSW to overhaul state cyber emergency plan

NSW to overhaul state cyber emergency plan

Google busts giant IPIDEA residential proxy network

Google busts giant IPIDEA residential proxy network

Malware toolkit guarantees store approval for Chrome extensions

Malware toolkit guarantees store approval for Chrome extensions

Log In

  |  Forgot your password?