Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 512
Alerts This Week
Warning Icon 1 512

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -4 articles for you...
83

Windows JPEG Security Risk: Remote Access Exploit Overview

Windows' JPEG vulnerability could be exploited by using Internet Explorer, a security firm claimed Wednesday, making the threat a potentially "devastating" one. But the claim may be more hype than anything, according to some rival security firms. . . .. Windows' JPEG vulnerability could be exploited by using Internet Explorer, a security firm claimed Wednesday, making the threat a potentially "devastating" one. But the claim may be more hype than anything, according to some rival security firms. Finjan Software, a San Jose, Calif.-based security vendor, said its Israel-based Malicious Code Research Center (MCRC) has identified a way for attackers to remotely access a vulnerable PC simply by getting a user to browse a page that contains a malformed JPEG image. Actually, that's not a new attack avenue. When Microsoft originally published details of the JPEG vulnerability, it cited potential vectors like e-mail and the Web, and said that in the case of the latter, "an attacker would have to host a Web site that contains a Web page that is used to exploit this vulnerability. An attacker would have to persuade [users] to visit the Web site, typically by getting them to click a link that takes them to the attacker's site." Most analysts have pegged the likeliest vector as an e-mail message with a malicious JPEG attachment, a route that does require some user interaction. Finjan's pronouncement, that it's possible for hackers to infect machines simply by getting users to browse a specially-crafted Web page, or one embedded, surreptitiously or not, with a bad-seed JPEG, is not likely to change that, said another security expert. The link for this article located at techweb.com is no longer available. . The JPEG flaw in Windows poses critical threats through Internet Explorer; delve into its consequences and potential routes for attack.. Windows JPEG Exploit, Internet Explorer Security, Image Vulnerability, Remote Access Risks. . LinuxSecurity.com Team

Calendar%202 Sep 30, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200