Warning: fopen(/home/rachdian/public_html/2008/old/cache/rss20.xml) [function.fopen]: failed to open stream: No such file or directory in /home/rachdian/public_html/2008/old/includes/feedcreator.class.php on line 685

Error creating feed file, please check write permissions.
Saturday, September 04 2010
Home
Photos Gallery
Guest Book
Links
Hot Info
Index
Latest Info
Jobs Info
IT/IS - Security
Education
Photo Stories (Photoblog)
Travelling Stories
About Me & Site
For Geek Family Only
About Me...
Diary
Contact Me
The Page Rank
Tools
Search Keyword
Check Domain!
Appreciate to this site?
Add to Technorati Favorites
Top 3 News
Subscribe with Bloglines
Info / Berita Terkait
KampungBlog.com - Kumpulan Blog-Blog Indonesia   Indonesia To Blog -Top Site
   PageRank Checker
Home arrow Index arrow IT/IS Security & Vulnerability arrow VRT Certified Rules Update 2006-12-07
VRT Certified Rules Update 2006-12-07 Print
User Rating: / 0
PoorBest 
Written by snort.org   
Friday, 08 December 2006
The VRT has continued research into vulnerabilities affecting the Microsoft Operating System and has introduced new rules and modified existing rules to provide coverage for exploitation attempts targeting these vulnerabilities.



Details:
Microsoft Security Bulletin MS06-068:
A vulnerability in the way that the Microsoft Agent handles .acf files may allow a remote attacker to execute code on an affected system. The code will be executed with the permissions of the current user who may have administrative privileges.

Rules to detect attacks targeting this vulnerability are included in this release and are identified as SIDs 9432 and 9433.

3Com TFTP Service CVE-2006-6183:
The 3Com TFTP Service suffers from multiple buffer overflow vulnerabilities. A remote attacker may be able to cause a Denial of Service (DoS) or execute code of their choosing on an affected system by supplying excess data in a GET or PUT command to the service.

A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 9621.

Microsoft Security Bulletin MS03-026:
After continuing research into a vulnerability affecting Microsoft RPC, the VRT has modified a number of existing rules and introduced new rules to reduce false positive events and to provide greater coverage for possible additional attack vectors.

Rules to detect attacks targeting this vulnerability are included in this release and are identified as SIDs 9447 through 9618.

Advisory:
A detailed advisory as well as a complete list of modified and deleted rules is available at
http://www.snort.org/rules/advisories/vrt-rules-2006-12-07.html.


Download Rules:
These rules will be available to subscribers only until Tuesday, December 12, 2006. Subscribers can download the rules at
http://www.snort.org/pub-bin/downloads.cgi.

Comments

Write Comment
Name:Guest
Title:
BBCode:Web AddressEmail AddressBold TextItalic TextUnderlined TextQuoteCodeOpen ListList ItemClose List
Comment:



This image contains a scrambled text, it is using a combination of colors, font size, background, angle in order to disallow computer to automate reading. You will have to reproduce it to post on my homepage Enter what you see: *
tips: hit Reload page before writing a text if you have difficulty reading characters in image

Last Updated ( Wednesday, 13 December 2006 )


© Copyright 2005, Adhi Rachdian.
URL: http://adhi.rachdian.com, http://rachdian.com, http://adhi.pacific.net.id, http://rachdian.pacific.net.id or http://blog.rachdian.com