SecurityFocus Microsoft Newsletter #204

Peter Laborge <[email protected]> 31 Aug 2004 21:36:06 -0000
Newsgroups gmane.comp.security.news.microsoft
Message-ID <[email protected]>
SecurityFocus Microsoft Newsletter #204
----------------------------------------

This Issue is Sponsored By: SecurityFocus 

Want to keep up on the latest security vulnerabilities? Don't have time to
visit a myriad of mailing lists and websites to read the news? Just add the
new SecurityFocus RSS feeds to your freeware RSS reader, and see all the
latest posts for Bugtraq and the SF Vulnernability database in one
convenient place. Or, pull in the latest news, columnists and feature
articles in the SecurityFocus aggregated news feed, and stay on top of
what's happening in the community!

http://www.securityfocus.com/rss/index.shtml

------------------------------------------------------------------------
I. FRONT AND CENTER
     1. A Polluted Internet
     2. Deploying Network Access Quarantine Control, Part 2
II. MICROSOFT VULNERABILITY SUMMARY
     1. Opera Web Browser JavaScript Denial Of Service Vulnerability
     2. Multiple Vendor Web Browser JavaScript Denial Of Service Vul...
     3. Davenport XML Expansion Denial Of Service Vulnerability
     4. JShop E-Commerce Suite Page.PHP Cross-Site Scripting Vulnera...
     5. FIDOGATE Logfile Path Input Validation Vulnerability
     6. Bird Chat Remote Denial Of Service Vulnerability
     7. EGroupWare Multiple Input Validation Vulnerabilities
     8. Gadu-Gadu File Download Filename Obfuscation Weakness
     9. PostgreSQL Debian GNU/Linux Specific Local Information Discl...
     10. Icecast Server Status Display Cross-Site Scripting Vulnerabi...
     11. NakedSoft Gaucho POP3 Email Header Buffer Overflow Vulnerabi...
     12. GNU a2ps File Name Command Execution Vulnerability
     13. Microsoft Internet Explorer Resource Detection Weakness
     14. People Can Fly Painkiller Remote Buffer Overflow Vulnerabili...
     15. Easy File Sharing Web Server Access Control Bypass Vulnerabi...
     16. Easy File Sharing Web Server Remote Denial Of Service Vulner...
     17. Microsoft Outlook Express BCC Field Information Disclosure V...
     18. IgnitionServer SERVER Command Remote Denial Of Service Vulne...
     19. Ipswitch WhatsUp Gold Remote Buffer Overflow Vulnerability
     20. RealVNC Server Remote Denial of Service Vulnerability
     21. Samba Remote Print Change Notify Denial Of Service Vulnerabi...
     22. Gaim Multiple Vulnerabilities
     23. Keene Digital Media Server Directory Traversal Variant Vulne...
     24. Mozilla/Netscape/Firefox Browsers XPCOM Plug-In For Apple Ma...
III. MICROSOFT FOCUS LIST SUMMARY
     1. ADSI question (Thread)
     2. Password policy enforcement tools was RE: ADSI quest... (Thread)
     3. Disable 'Save Password' feature on MS VPN client (Thread)
     4. COM+ with ASP web site on W2K3 (Thread)
     5. Signed Email w/Exchange 2003, Windows 2003 PKI (Thread)
     6. SecurityFocus Microsoft Newsletter #203 (Thread)
IV. NEW PRODUCTS FOR MICROSOFT PLATFORMS
     1. Firewall RuleMaker
     2. CAT Cellular Authentication Token and eAuthentication Servic...
     3. KeyCaptor Keylogger
     4. SpyBuster
     5. FreezeX
     6. NeoExec for Active Directory
V. NEW TOOLS FOR MICROSOFT PLATFORMS
     1. Mutilate File Wiper 2.90
     2. K-MAC 1.0.0.4
     3. Honeynet Security Console 1.1.1
     4. IDS Policy Manager v1.4.1
     5. cenfw 0.3b
     6. zigstack 5
VI. UNSUBSCRIBE INSTRUCTIONS
VII. SPONSOR INFORMATION

I. FRONT AND CENTER
-------------------
1. A Polluted Internet
By Kelly Martin

Worms and viruses that pollute the Internet aren't new. What's new is the
incredible magnitude of the problem and how it's growing. 

http://www.securityfocus.com/columnists/263


2. Deploying Network Access Quarantine Control, Part 2
By Jonathan Hassell

This article discusses Network Access Quarantine Control in Windows Server
2003, which allows administrators to quarantine mobile users and verify
their security posture before giving them full access to the network. Part
2 of 2.

http://www.securityfocus.com/infocus/1799

II. MICROSOFT VULNERABILITY SUMMARY
-----------------------------------
1. Opera Web Browser JavaScript Denial Of Service Vulnerability
BugTraq ID: 10997
Remote: Yes
Date Published: Aug 21 2004
Relevant URL: http://www.securityfocus.com/bid/10997
Summary:
Opera is a web browser available for a number of platforms, including Microsoft Windows, Linux and Unix variants and Apple MacOS.

Opera Web Browser is reported to be susceptible to a JavaScript denial of service vulnerability.

This vulnerability presents itself when Opera attempts to execute a specific JavaScript command. Upon executing this command, Opera will reportedly crash.

This vulnerability was reported to exist in version 7.23 of Opera for Microsoft Windows. Other versions are also likely affected.

2. Multiple Vendor Web Browser JavaScript Denial Of Service Vul...
BugTraq ID: 10998
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/10998
Summary:
Web browsers from multiple different vendors are reported susceptible to a denial of service vulnerability.

The specified JavaScript code will consume 100% of the CPU resources of the affected computer. The browser will then reportedly crash.

Mozilla Firefox, Microsoft Internet Explorer, and Opera are all reportedly affected by this vulnerability.

Update: This BID is being retired as this is not considered a security vulnerability.

3. Davenport XML Expansion Denial Of Service Vulnerability
BugTraq ID: 11001
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11001
Summary:
Davenport is reportedly affected by a denial of service vulnerability in its XML parsing functionality.  This issue is due to a failure of the application to properly handle exceptional conditions.

Exploitation of this issue will allow an attacker to cause the affected application to hang, denying service to legitimate users.

4. JShop E-Commerce Suite Page.PHP Cross-Site Scripting Vulnera...
BugTraq ID: 11003
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11003
Summary:
Reportedly the JShop E-Commerce Suite is affected by a cross-site scripting vulnerability in the 'page.php' script.  This issue is due to a failure of the application to properly santitize user-supplied input.

As a result of this vulnerability, it is possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of an unsuspecting user when followed.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

5. FIDOGATE Logfile Path Input Validation Vulnerability
BugTraq ID: 11005
Remote: No
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11005
Summary:
FIDOGATE is prone to an input validation error that may permit local users to append to or create files with the privileges of the program.  The source of the problem is that the attacker may control the location of the logfile.  Since the program is typically setuid 'news', this could be exploited to append to or create files in the context of that user.

This issue would only affect versions of the software for UNIX/Linux variants.

6. Bird Chat Remote Denial Of Service Vulnerability
BugTraq ID: 11010
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11010
Summary:
Bird Chat has been reported to be affected by a remote denial of service vulnerability.  This issue is likely due to a failure of the application to properly sanitize user-supplied input, although this is not confirmed.

An attacker can leverage this issue to cause all chat clients connected to a vulnerable server to crash, denying service to legitimate users.

7. EGroupWare Multiple Input Validation Vulnerabilities
BugTraq ID: 11013
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11013
Summary:
It is reported that eGroupWare is susceptible to multiple cross-site scripting and HTML injection vulnerabilities.

The cross-site scripting issues present themselves in the various parameters of the 'addressbook' and 'calendar' modules. It is also reported that data input through the 'Search' fields of the 'addressbook', 'calendar', and 'search between projects' functionality are not sufficiently sanitized. 

An attacker can exploit these issues for theft of cookie-based authentication credentials and other attacks.

Additionally HTML injection vulnerabilities are reported for the eGroupWare 'Messenger' module and 'Ticket' module. 

Attackers may potentially exploit these issues to manipulate web content or to steal cookie-based authentication credentials. It may be possible to take arbitrary actions as the victim user.

8. Gadu-Gadu File Download Filename Obfuscation Weakness
BugTraq ID: 11017
Remote: Yes
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11017
Summary:
Gadu-Gadu is a Polish instant messaging application for Microsoft Windows operating systems.

It is reported that the Gadu-Gadu instant messenger application contains a weakness allowing attackers to obfuscate file extensions.

This may allow an attacker to send potentially malicious executable files to users who think that they are downloading files that are believed to be harmless.

9. PostgreSQL Debian GNU/Linux Specific Local Information Discl...
BugTraq ID: 11019
Remote: No
Date Published: Aug 23 2004
Relevant URL: http://www.securityfocus.com/bid/11019
Summary:
The version of PostgreSQL contained in Debian/GNU Linux is reported susceptible to an information disclosure vulnerability. This issue is due to improper file permissions in the default installation of the PostgreSQL package.

This may aid attackers in further system compromise.

Versions up to, and including version 7.4.3-3 of the Debian package for PostgreSQL are reported affected by this vulnerability.

10. Icecast Server Status Display Cross-Site Scripting Vulnerabi...
BugTraq ID: 11021
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11021
Summary:
Reportedly Icecast Server is affected by a cross-site scripting vulnerability in the status display functionality.  This issue is due to a failure of the application to properly sanitize user-supplied input.

As a result of this vulnerability, it is possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of an unsuspecting user when followed. This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

11. NakedSoft Gaucho POP3 Email Header Buffer Overflow Vulnerabi...
BugTraq ID: 11023
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11023
Summary:
NakedSoft Gaucho is affected by an email header buffer overflow vulnerability.  This issue is due to a failure of the application to properly validate user input string lengths before copying them to finite process buffers.

Ultimately a malicious attacker may exploit this issue to execute arbitrary code on the affected computer with the privileges of the user who started the affected application by sending a specially crafted malicious email.

12. GNU a2ps File Name Command Execution Vulnerability
BugTraq ID: 11025
Remote: No
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11025
Summary:
Reportedly GNU a2ps is affected by a file name command execution vulnerability.  This issue is due to a failure of the application to properly sanitize filenames.

This issue might be leveraged by an attacker to execute arbitrary shell commands with the privileges of an unsuspecting user running the vulnerable application.

Although this issue reportedly affects only a2ps version 4.13 it is likely that other versions are affected as well.

13. Microsoft Internet Explorer Resource Detection Weakness
BugTraq ID: 11026
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11026
Summary:
Microsoft Internet Explorer is prone to a security weakness that may permit an attacker to determine the existence of resources on a vulnerable computer.

An attacker can use an IFRAME that is accessible within the same domain and change its URI to the location of a file or directory.  The attacker can then determine the existence of the resource by the error message returned by Internet Explorer.

This weakness can then allow the attacker to carry out other attacks against a vulnerable computer.

This issue was tested on Microsoft Internet Explorer 5.0 and 6.0.  Other versions of the browser are likely affected as well.

14. People Can Fly Painkiller Remote Buffer Overflow Vulnerabili...
BugTraq ID: 11029
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11029
Summary:
Painkiller is reported prone to a remote buffer overflow vulnerability.  This issue presents itself due to insufficient boundary checks performed by the application during a connection request.

Painkiller versions 1.3.1 and prior are reported vulnerable to this issue.

15. Easy File Sharing Web Server Access Control Bypass Vulnerabi...
BugTraq ID: 11034
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11034
Summary:
Easy File Sharing Web Server is reported prone to an access control bypass vulnerability.

It is reportedly possible for a remote attacker to gain read access to the filesystem on the underlying computer by making a request for the name of a virtual folder on the Web Server.

Information harvested by exploiting this vulnerability may be used to aid in further attacks launched against the vulnerable computer.

16. Easy File Sharing Web Server Remote Denial Of Service Vulner...
BugTraq ID: 11036
Remote: Yes
Date Published: Aug 24 2004
Relevant URL: http://www.securityfocus.com/bid/11036
Summary:
Easy File Sharing Web Server is reported prone to a remote denial of service vulnerability. 

It is reported that the vulnerability will present itself when the Easy File Sharing Web Server handles large HTTP requests.

A remote attacker may exploit this vulnerability to deny service to legitimate users.

17. Microsoft Outlook Express BCC Field Information Disclosure V...
BugTraq ID: 11040
Remote: Yes
Date Published: Aug 25 2004
Relevant URL: http://www.securityfocus.com/bid/11040
Summary:
Microsoft Outlook Express is reported prone to a BCC field information disclosure vulnerability.  It is reported that Outlook Express does not properly handle BCC headers, disclosing the email address on the blind carbon copy list to the 'To:' and 'CC:' field recipients of such a message.  It is also reported that this issue only occurs if Outlook Express is configured to break messages into larger than a specific size.

This issue affects Microsoft Outlook Express 6.0.

18. IgnitionServer SERVER Command Remote Denial Of Service Vulne...
BugTraq ID: 11041
Remote: Yes
Date Published: Aug 25 2004
Relevant URL: http://www.securityfocus.com/bid/11041
Summary:
ingitionServer is affected by a remote SERVER command denial of service vulnerability.  This issue is due to a failure of the application to properly handle exceptional conditions.

An attacker might leverage this issue to cause an affected server to crash or hang, denying service to legitimate users.

19. Ipswitch WhatsUp Gold Remote Buffer Overflow Vulnerability
BugTraq ID: 11043
Remote: Yes
Date Published: Aug 25 2004
Relevant URL: http://www.securityfocus.com/bid/11043
Summary:
Ipswitch WhatsUp Gold is affected by a remote buffer overflow vulnerability.  This issue is due to a failure of the application to properly validate user-supplied string lengths before copying them into static process buffers.

An attacker might leverage this issue to execute arbitrary code on the affected computer with the privileges of the user that started the vulnerable application.

20. RealVNC Server Remote Denial of Service Vulnerability
BugTraq ID: 11048
Remote: Yes
Date Published: Aug 25 2004
Relevant URL: http://www.securityfocus.com/bid/11048
Summary:
RealVNC server is reported prone to a remote denial of service vulnerability.  This issue presents itself when an attacker establishes a large amount connections to the server.

This issue was reportedly tested on RealVNC 4.0 running on Microsoft Windows 2000.

21. Samba Remote Print Change Notify Denial Of Service Vulnerabi...
BugTraq ID: 11055
Remote: Yes
Date Published: Aug 26 2004
Relevant URL: http://www.securityfocus.com/bid/11055
Summary:
Samba is reportedly vulnerable to a remote denial of service vulnerability in the processing of print change notify requests.  This issue is due to a failure of the application to handle out of sequence requests.

An attacker might leverage this issue to cause the affected server to crash, denying service to legitimate users.

22. Gaim Multiple Vulnerabilities
BugTraq ID: 11056
Remote: Yes
Date Published: Aug 26 2004
Relevant URL: http://www.securityfocus.com/bid/11056
Summary:
Gaim version 0.82 has been released.  This version addressed various security vulnerabilities.

The following specific issues have been disclosed by the vendor:

Gaim is reported prone to a remote arbitrary command execution vulnerability during the installation of a smiley theme.

The Gaim client is reported prone to a remote heap overflow vulnerability when processing data from a groupware server.

A remote buffer overflow vulnerability exists in the URI parsing utility.

A buffer overflow vulnerability arises when the application performs a DNS query to obtain a hostname when signing on to zephyr.

Another buffer overflow presents itself when the application processes Rich Text Format (RTF) messages.

A malicious server can trigger a buffer overflow vulnerability in Gaim by supplying an excessive value for the 'content-length' header.

These issues affect Gaim versions prior to 0.82.  Some of these issues may have been reported previously.  This BID will be updated and divided into individual BIDs as more information becomes available.

23. Keene Digital Media Server Directory Traversal Variant Vulne...
BugTraq ID: 11057
Remote: Yes
Date Published: Aug 26 2004
Relevant URL: http://www.securityfocus.com/bid/11057
Summary:
It is reported that DMS is susceptible to a directory traversal vulnerability.

The directory traversal issue is present upon requesting files outside the webroot of the application using hex encoded directory traversal character sequences to create a relative path to the target file.

This vulnerability will allow a remote attacker to retrieve potentially sensitive files, possibly aiding them in further system compromise.

Version 1.0.2 of the software is reported vulnerable to this issue. Other versions may also be affected.

24. Mozilla/Netscape/Firefox Browsers XPCOM Plug-In For Apple Ma...
BugTraq ID: 11059
Remote: Yes
Date Published: Aug 26 2004
Relevant URL: http://www.securityfocus.com/bid/11059
Summary:
Browsers based on the Gecko engine are reported prone to a content spoofing vulnerability when they are running on the Apple Mac OS X platform. It is reported that the vulnerability occurs when the browser is configured to employ 'Tabbed Browsing' functionality. 

In essence, an XPCOM plug-in that is invoked in one tab will be drawn into the environment of alternate tabs that are open in the same browser window.

This vulnerability may be eexploited to spoof content and to aid in phishing style attacks.

III. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. ADSI question (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/373526

2. Password policy enforcement tools was RE: ADSI quest... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/373391

3. Disable 'Save Password' feature on MS VPN client (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/373248

4. COM+ with ASP web site on W2K3 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/372948

5. Signed Email w/Exchange 2003, Windows 2003 PKI (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/372934

6. SecurityFocus Microsoft Newsletter #203 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/372869

IV. NEW PRODUCTS FOR MICROSOFT PLATFORMS
----------------------------------------
1. Firewall RuleMaker
By: The Net Memetic Pte Ltd
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Relevant URL: http://firewall.rulemaker.net
Summary: 

Firewall RuleMaker is a Windows-based firewall configuration version control software product for managers of Cisco PIX and Netscreen firewalls.

2. CAT Cellular Authentication Token and eAuthentication Servic...
By: Mega AS Consulting Ltd
Platforms: Java, Linux, OpenBSD, Os Independent, SecureBSD, Solaris, UNIX, Windows 2000, Windows NT
Relevant URL: http://www.megaas.co.nz
Summary: 

Low cost, easy to use Two Factor Authentication One Time Password token using the Cellular. Does not use SMS or communication, manages multiple OTP accounts - new technology. For any business that want a safer access to its Internet Services. More information at our site.
 
We also provide eAuthentication service for businesses that will not buy an Authentication product but would prefer to pay a monthly charge for authentication services from our our CAT Server.

3. KeyCaptor Keylogger
By: Keylogger Software
Platforms: MacOS, Windows 2000, Windows 95/98, Windows NT, Windows XP
Relevant URL: http://www.keylogger-software.com/keylogger/keylogger.htm
Summary: 

KeyCaptor is your solution for recording ALL keystrokes of ALL users on your computer!  Now you have the power to record emails, websites, documents, chats, instant messages, usernames, passwords, and MUCH MORE!

With our advanced stealth technology, KeyCaptor will not show in your processes list and cannot be stopped from running unless you say so!

4. SpyBuster
By: Remove Spyware
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Relevant URL: http://www.remove-spyware.com/spybuster.htm
Summary: 

Our award winning spyware / adware scanner and removal software, SpyBuster will scan your computer for over 4,000 known spyware and adware applications. SpyBuster protects your computer from data stealing programs that can expose your personal information.

SpyBuster scanning technology allows for a quick and easy sweep, so you can resume your work in minutes.

5. FreezeX
By: Faronics Technologies USA Inc
Platforms: Windows 2000, Windows 95/98, Windows XP
Relevant URL: http://www.faronics.com/html/Freezex.asp
Summary: 

FreezeX prevents all unauthorized programs, including viruses, keyloggers and spy ware from executing. Powerful and secure, FreezeX ensures that any new executable, program, or application that is downloaded, introduced via removable media or the network will never install

6. NeoExec for Active Directory
By: NeoValens
Platforms: Windows 2000, Windows XP
Relevant URL: http://www.neovalens.com
Summary: 

NeoExec® is an operating system extension for Windows 2000/XP that allows the setting of privileges at the application level rather than at the user level.

NeoExec® is the ideal solution for applications that require elevated privileges to run as the privileges are granted to the application, not the user.

NeoExec® is the only solution on the market capable of modifying at runtime the processes' security context -- without requiring a second account as with RunAs and RunAs-derived products.

V. NEW TOOLS FOR MICROSOFT PLATFORMS
------------------------------------
1. Mutilate File Wiper 2.90
By: Craig Christensen, [email protected]
Relevant URL: http://mutilatefilewiper.com
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary: 

Delete your sensitive files permanently. Mutilate File Wiper prevents recovery of deleted files from your hard drive by data recovery or forensic software. Choose one of three security levels or configure a customizable level for up to 297 overwrite passes. Mutilate supports complete folder shredding including subfolders. With Mutilate's disk free space wiper, you can even use Mutilate to permanently erase previously deleted files on your hard drive.

2. K-MAC 1.0.0.4
By: M. Neset KABAKLI
Relevant URL: http://www.neset.com
Platforms: Windows 2000, Windows NT, Windows XP
Summary: 

K-MAC is an ethernet MAC address changer for Windows. It's very useful for dealing with MAC filters and other MAC based controls.

3. Honeynet Security Console 1.1.1
By: Activeworx, Inc.
Relevant URL: http://www.activeworx.org
Platforms: Windows 2000, Windows XP
Summary: 

Honeynet Security Console is an analysis tool to view events on your personal honeynet. It gives you the power to view events from Snort, TCPDump, Firewall, Syslog and Sebek logs. It also allows you to correlate events from each of these data types to have a full grasp of the attackers' actions.

4. IDS Policy Manager v1.4.1
By: ActiveWorx
Relevant URL: http://www.activeworx.com/idspm/
Platforms: Windows 2000, Windows XP
Summary: 

IDS Policy Manager - is a powerful way to modify the snort configuration and rule files. Some key features are: Graphical interface for easily manageability of snort rule and configuration files  - Merge new official snort rules into existing rule files  - Merge Whitehat (arachNIDS) rules into existing rule files  - Make quick changes to snort rules  - Easy to manage multiple sensors with multiple policy files  - Upload policy files via FTP or SCP  - Full support for all Snort 1.8 Preprocessors  - Full support for all Snort 1.8 output processors  - Easy to learn more information about a signature from popular databases such as - - - CVE, BugTraq, Mcafee, arachNIDS and custom URL's  - Add rules easily by line, multiple lines or make your own custom signatures

5. cenfw 0.3b
By: Peter Robinson
Relevant URL: http://www.securegateway.org
Platforms: Linux, Windows 2000, Windows NT, Windows XP
Summary: 

The Centron IPTables Firewall Gui is an object oriented, database driven, windows interface to linux IPtables firewall rules.

6. zigstack 5
By: Alexander 'xaitax' Hagenah
Relevant URL: http://xaitax.de
Platforms: Windows 2000, Windows NT, Windows XP
Summary: 

hardening your tcp/ip stack (e.g. against dos-attacks) of windowsnt/2k/xp/2003-based workstations and servers.
new* incl. 7 new methods and remote-registry functions.

VI. UNSUBSCRIBE INSTRUCTIONS
----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.

If your email address has changed email [email protected] and ask to be manually removed.
    
VII. SPONSOR INFORMATION
-----------------------

This Issue is Sponsored By: SecurityFocus 

Want to keep up on the latest security vulnerabilities? Don't have time to
visit a myriad of mailing lists and websites to read the news? Just add the
new SecurityFocus RSS feeds to your freeware RSS reader, and see all the
latest posts for Bugtraq and the SF Vulnernability database in one
convenient place. Or, pull in the latest news, columnists and feature
articles in the SecurityFocus aggregated news feed, and stay on top of
what's happening in the community!

http://www.securityfocus.com/rss/index.shtml

------------------------------------------------------------------------