RSA patches major vulnerability

By
Follow google news

RSA has issued an unexpected patch to plug a hole in its web application tool.

A boundary error in the RSA Authentication Agent for Web affects IIS version 5.x.


Security and vulnerability group Secunia has released an advisory suggesting hackers could create a heap-based buffer overflow.

Alongside the RSA vulnerability equally dangerous, executable vulnerabilities has been found in Ethereal, a packet sniffing program. Both vulnerabilities, as well as one within Smail, a minor MTA, are rated critical.

The news come two days after Microsoft released a single patch in its monthly patch cycle. The script injection vulnerability was rated as "important" and affects Windows 98, 2000 and ME users only.

In March SC reported Microsoft released eight security patches, at least half of which were rated critical.

In the same month SC reported Microsoft's major OS update, SP2 for Windows XP, was being rejected by over half of companies.

www.rsa.com
www.microsoft.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Popular text editor Notepad++ was hacked to drop malware

Popular text editor Notepad++ was hacked to drop malware

NSW to overhaul state cyber emergency plan

NSW to overhaul state cyber emergency plan

'Moltbook' social media site for AI agents had big security hole

'Moltbook' social media site for AI agents had big security hole

Google busts giant IPIDEA residential proxy network

Google busts giant IPIDEA residential proxy network

Log In

  |  Forgot your password?