Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Vendors/Products - Page 35

We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.

Discover Vendors/Products News

Adobe Reader 9.0 Critical Advisory: Authplay.dll Exploit Detected

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

According to a security advisory from Adobe, there is a critical vulnerability in Flash Player 10.0.45.2 (and earlier versions) and in the authplay.dll component that ships with Adobe Reader and Acrobat 9.0; Windows, Mac OS X, Unix and Linux versions are all vulnerable. Attackers can exploit the hole to crash the software or gain control of the system and there are already reports of exploitation in the wild for all three products.

Google WebM License: Analyzing Open Source Concerns and Impacts

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

As Apple and Adobe sparred over the inclusion of Flash in the iPhone OS, supporters of the emerging HTML5 standard -- including Apple, Google, and Microsoft -- touted the H.264 video codec specified in HTML5 as a reason that Flash is unnecessary. But H.264 is proprietary technology that requires a license for use and redistribution, which effectively means Mozilla can't adopt it for the open source Firefox browser.

Symantec's $1.28 Billion Acquisition of VeriSign's Security Division

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

In case your boss ever questions whether security is big business... Symantec will pay US$1.28 billion to acquire VeriSign's security business. The two companies confirmed the rumored acquisition, saying it would give VeriSign the opportunity to focus on its more-profitable domain name business, while allowing Symantec to broaden its growing portfolio of enterprise security products. l.

Samba 3.4.8 Security Advisory: Critical DoS Issues Resolved

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Released last week, version 3.4.8 of the free Samba file and print server fixes various holes including two denial of service (DoS) vulnerabilities which allow attackers to remotely crash the Smbd service. One of the problems is caused by a null pointer dereference when processing a certain series of SMB headers that include a specific combination of flags.

Examining Open Source's Impact on Cloud Lock-In and Vendor Risks

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

One of open source's promises is to minimize vendor lock-in. However, it's not so apparent that this value proposition holds when using software as a service (SaaS) or cloud-based platform services. The implication is clear: So-called open source cloud platforms, like the recently announced VMforce, are no more open than proprietary clouds -- and believing otherwise will trap you into unintended lock-in.

Evaluating Symantec's Linux Spam Claims Against Windows Systems

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The latest MessageLabs Intelligence Report from Symantec Hosted Services is filled with interesting and useful information regarding the current state of malware and e-mail borne threats as well as the trends over time. Of particular interest to me is the assertion in the report that "any given Linux machine is five times more likely to be sending spam than any given Windows machine."

Enomaly High Assurance Edition: Securing Cloud Apps for Linux Users

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Marketing hype, or does this product provide value to Linux users? Enomaly, a leading provider of cloud computing platform software for telcos and other service providers, today announced the availability of the High Assurance Edition of the Enomaly Elastic Computing Platform. The new product enables telcos and service providers to offer their customers a cloud computing service with a higher level of security than has previously been available in Infrastructure as a Service (IaaS) offerings.

Your message here