SecurityFocus Microsoft Newsletter #409

[email protected] 29 Aug 2008 22:41:04 -0000
Newsgroups gmane.comp.security.news.microsoft
Message-ID <[email protected]>
SecurityFocus Microsoft Newsletter #409
----------------------------------------

This issue is sponsored by Sponsored by Motorola Good technology

Mobile Device Security: Securing the Handheld, Securing the Enterprise. M=
obile devices represent a tremendous productivity advantage for today's m=
obile worker. However, IT organizations must give consideration to the de=
ployment of device security policies in order to provide the level of sec=
urity that enterprises require.
http://whitepapers.securityfocus.com/option,com_categoryreport/task,viewa=
bstract/title,1267/id,/vid,36/cat,/pathway,no/srcid,189/


SECURITY BLOGS
SecurityFocus has selected a few syndicated sources that stand out as con=
veying topics of interest for our community. We are proud to offer conten=
t from Matasano at this time and will be adding more in the coming weeks.
http://www.securityfocus.com/blogs

------------------------------------------------------------------
I.   FRONT AND CENTER
       1.Get Off My Cloud
       2.An Astonishing Collaboration
II.  MICROSOFT VULNERABILITY SUMMARY
       1. PureMessage for Microsoft Exchange RTF Multiple Denial Of Servi=
ce Vulnerabilities
       2. Mono 'System.Web' HTTP Header Injection Vulnerability
       3. Ultra Office Control 'Save()' Method Arbitrary File Overwrite V=
ulnerability
       4. Ultra Office Control 'HttpUpload()' Method Buffer Overflow Vuln=
erability
       5. LibTIFF 'tif_lzw.c' Remote Integer Underflow Vulnerability
       6. JustSystems Ichitaro Document Handling Unspecified Code Executi=
on Vulnerability
       7. Retired: DriveCrypt Incorrect BIOS API Usage Security Vulnerabi=
lity
       8. Microsoft Windows Media Services 'nskey.dll' ActiveX Control Re=
mote Buffer Overflow Vulnerability
       9. Folder Lock Weak Password Encryption Local Information Disclosu=
re Vulnerability
       10. Opera Web Browser 9.51 Multiple Security Vulnerabilities
III. MICROSOFT FOCUS LIST SUMMARY
       1. SecurityFocus Microsoft Newsletter #408
IV.  UNSUBSCRIBE INSTRUCTIONS
V.   SPONSOR INFORMATION

I.   FRONT AND CENTER
---------------------
1.Get Off My Cloud
By Mark Rasch
One of the features of Apple's device that appeals to me is the new Mobil=
eMe service, where you can "access and manage your email, contacts, calen=
dar, photos, and files at me.com," according to Apple.=20
More companies, among them Microsoft and Google, already allow people to =
store information and use common services online -- or "in the cloud" -- =
leading analysts to refer to the entire trend as "cloud computing."
http://www.securityfocus.com/columnists/478

2.An Astonishing Collaboration
By Dan Kaminsky
Wow. It's out. It's finally, finally out. Sweet!
http://www.securityfocus.com/columnists/477


II.  MICROSOFT VULNERABILITY SUMMARY
------------------------------------
1. PureMessage for Microsoft Exchange RTF Multiple Denial Of Service Vuln=
erabilities
BugTraq ID: 30881
Remote: Yes
Date Published: 2008-08-28
Relevant URL: http://www.securityfocus.com/bid/30881
Summary:
PureMessage for Microsoft Exchange is prone to multiple remote denial-of-=
service vulnerabilities because the application fails to properly process=
 certain messages.

An attacker may exploit these issues to crash the affected application, d=
enying service to legitimate users.

PureMessage 3.0 is vulnerable; other versions may also be affected.

2. Mono 'System.Web' HTTP Header Injection Vulnerability
BugTraq ID: 30867
Remote: No
Date Published: 2008-08-20
Relevant URL: http://www.securityfocus.com/bid/30867
Summary:
Mono is prone to a vulnerability that allows attackers to inject arbitrar=
y HTTP headers because it fails to sanitize input.

By inserting arbitrary headers into an HTTP response, attackers may be ab=
le to launch cross-site request-forgery, cross-site scripting, HTTP-reque=
st-smuggling, and other attacks.

This issue affects Mono 2.0 and earlier.

3. Ultra Office Control 'Save()' Method Arbitrary File Overwrite Vulnerab=
ility
BugTraq ID: 30863
Remote: Yes
Date Published: 2008-08-27
Relevant URL: http://www.securityfocus.com/bid/30863
Summary:
Ultra Office Control is prone to a vulnerability that lets attackers over=
write files with arbitrary, attacker-controlled content. The issue occurs=
 because the control fails to sanitize user-supplied input.

Successful exploits may allow attackers to compromise affected computers.

Ultra Office Control 2.0.2008.501 is vulnerable; other versions may also =
be affected.

4. Ultra Office Control 'HttpUpload()' Method Buffer Overflow Vulnerabili=
ty
BugTraq ID: 30861
Remote: Yes
Date Published: 2008-08-27
Relevant URL: http://www.securityfocus.com/bid/30861
Summary:
Ultra Office Control is prone to a buffer-overflow vulnerability because =
the application fails to perform adequate boundary-checks on user-supplie=
d data.=20

An attacker can exploit this issue to execute arbitrary code in the conte=
xt of an application using the ActiveX control (typically Internet Explor=
er). Failed attacks will likely cause denial-of-service conditions.

Ultra Office Control  2.0.2008.501 is vulnerable; other versions may also=
 be affected.

5. LibTIFF 'tif_lzw.c' Remote Integer Underflow Vulnerability
BugTraq ID: 30832
Remote: Yes
Date Published: 2008-08-26
Relevant URL: http://www.securityfocus.com/bid/30832
Summary:
LibTIFF is prone to an integer-underflow vulnerability because it fails t=
o bounds-check user-supplied input before copying it into an insufficient=
ly sized memory buffer.

 An attacker can exploit this issue to execute arbitrary malicious code i=
n the context of the user running an application that uses the affected l=
ibrary. Failed exploit attempts will likely crash applications using the =
affected library.
=20
LibTIFF 3.7.2 and 3.8.2 are vulnerable.

6. JustSystems Ichitaro Document Handling Unspecified Code Execution Vuln=
erability
BugTraq ID: 30828
Remote: Yes
Date Published: 2008-08-26
Relevant URL: http://www.securityfocus.com/bid/30828
Summary:
Ichitaro is prone to an unspecified remote code-execution vulnerability.

Attackers may exploit this issue to execute arbitrary code within the con=
text of the vulnerable application. Failed attempts will result in a deni=
al-of-service condition.

Ichitaro 2008 is vulnerable; other versions may also be affected.

7. Retired: DriveCrypt Incorrect BIOS API Usage Security Vulnerability
BugTraq ID: 30818
Remote: No
Date Published: 2008-08-25
Relevant URL: http://www.securityfocus.com/bid/30818
Summary:
DriveCrypt is prone to a security vulnerability that may cause a denial-o=
f-service condition or allow attackers to gain access to plain text passw=
ords.

Local attackers can exploit this issue to gain access to access to sensit=
ive information or cause the affected computer to reboot.

DriveCrypt Plus Pack version 3.9 is vulnerable; other versions may also b=
e affected.

Note: This vulnerability is the same issue described in BID 15751 (Multip=
le Vendor BIOS Keyboard Buffer Password Persistence Weakness) therefore t=
his BID is being retired.

8. Microsoft Windows Media Services 'nskey.dll' ActiveX Control Remote Bu=
ffer Overflow Vulnerability
BugTraq ID: 30814
Remote: Yes
Date Published: 2008-08-22
Relevant URL: http://www.securityfocus.com/bid/30814
Summary:
The Microsoft Windows Media Services ActiveX control is prone to a buffer=
-overflow vulnerability because it fails to perform adequate boundary che=
cks on user-supplied input.

An attacker can exploit this issue to execute arbitrary code in the conte=
xt of an application using the affected ActiveX control (typically Intern=
et Explorer). Failed attacks will likely cause denial-of-service conditio=
ns.

'nskey.dll' 4.1.00.3917 is vulnerable; other versions may also be affecte=
d.

9. Folder Lock Weak Password Encryption Local Information Disclosure Vuln=
erability
BugTraq ID: 30771
Remote: No
Date Published: 2008-08-20
Relevant URL: http://www.securityfocus.com/bid/30771
Summary:
Folder Lock is prone to an information-disclosure vulnerability because i=
t stores credentials in an insecure manner.

A local attacker can exploit this issue to obtain passwords used by the a=
pplication, which may aid in further attacks.

Folder Lock 5.9.5 is vulnerable; other versions may also be affected.

10. Opera Web Browser 9.51 Multiple Security Vulnerabilities
BugTraq ID: 30768
Remote: Yes
Date Published: 2008-08-20
Relevant URL: http://www.securityfocus.com/bid/30768
Summary:
Opera Web Browser is prone to multiple security vulnerabilities.

Successful exploits may allow attackers to:
- cause denial-of-service conditions
- violate the same-origin policy
- carry out phishing and cross-domain attacks
- execute arbitrary script code in the browser of an unsuspecting user in=
 the context of an affected site
- steal cookie-based authentication credentials
- present insecure websites as secure
- obtain sensitive information
- mislead a user
- carry out other attacks

Versions prior to Opera 9.52 are vulnerable.

III. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. SecurityFocus Microsoft Newsletter #408
http://www.securityfocus.com/archive/88/495736

IV.  UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to ms-secnews-unsubscribe@securityf=
ocus.com from the subscribed address. The contents of the subject or mess=
age body do not matter. You will receive a confirmation request message t=
o which you will have to answer. Alternatively you can also visit http://=
www.securityfocus.com/newsletters and unsubscribe via the website.

If your email address has changed email [email protected] and a=
sk to be manually removed.

V.   SPONSOR INFORMATION
------------------------
This issue is sponsored by Sponsored by Motorola Good technology

Mobile Device Security: Securing the Handheld, Securing the Enterprise. M=
obile devices represent a tremendous productivity advantage for today's m=
obile worker. However, IT organizations must give consideration to the de=
ployment of device security policies in order to provide the level of sec=
urity that enterprises require.
http://whitepapers.securityfocus.com/option,com_categoryreport/task,viewa=
bstract/title,1267/id,/vid,36/cat,/pathway,no/srcid,189/