security
SITE SECURITY ISSUES



Subscribe to "security" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.

© copyright 2002
by Marc Barrot.

Permalink
Wednesday, April 17, 2002

Office X Combined Updater 10.0.3

Today is update day on s l a m. You can find more information about this MS Office update in the following Microsoft security bulletins: MS02-002 and MS02 -019.

Download is available at http://microsoft.com/mac/DOWNLOAD/officex/CombUpd1003.asp.

6:31:56 PM  Permalink  comments:   Google It!  


MacOS X 10.1.4 Upgrade

Apple does slightly better than Microsoft in their system update description:

Security Update: -- BSD-based TCP/IP connections now check and block broadcast or multicast IP destination addresses.
Among other things, version 10.1.4 is also supposed to improve PPP connections and file searching on local and remote volumes.

MacOS X Software Update control panel is great. What I'd like to find with every update description that involves operational security is a link to a web page with detailed information on what was fixed. The only way to advance both security and reliability is by improved information disclosure.

6:08:29 PM  Permalink  comments:   Google It!  


Internet Explorer 5.1.4 Update

Microsoft really needs to work on their update descriptions, especially when security issues are involved. How many pieces of real information can you find in the following paragraph

This latest version - version 5.1.4 - resolves all potential security vulnerabilities in previous versions of Internet Explorer 5. This includes vulnerabilities that might have caused Internet Explorer to stop responding or caused a memory problem that compromised the security of the computer.
Granted, I'd rather have cryptic upgrades than no upgrades at all, but there's no question Microsoft's Macintosh Business Unit can do better than that.

And it does: a little exploration of Microsoft's site let me find the appropriate security bulletin in no time.

Now all that's missing is a mention of this bulletin's url in the update description.

6:01:29 PM  Permalink  comments:   Google It!  


April 2002
Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30        
Mar   Jun

last updated: 10/21/02; 12:46:34 AM.