Monday, July 28, 2008
A new buffer overflow vulnerability has been identified in the BEA WebLogic application server, according to the Tech Republic weekly network security bulletin.
The web journal has noted that systems running the software could be left exposed to the risk of system crashes, as well as remote code execution.
Two major IT security analysts have identified the flaw as critical, with all versions between 5 and 10 said to be affected.
No security patches are currently available for the flaw and the only way to minimize exposure is to limit network access to compromised systems.
In its weekly roundup, Tech Republic also alerted businesses that full details of the widely publicized DNS exploit reported earlier this month are now circulating on the web.
Following publication of the flaw, vnunet.com has noted that hackers have now developed a module capable of exploiting the vulnerability.
The problem was originally identified by network security researcher Dan Kaminsky, although he did not give out full details of the fault.
Related News:
Potential for more Twitter hacks - 1.7.2009
In the wake of some hackers gaining control of celebrity Twitter accounts, some security experts are expounding on the future of security breaches with the social networking site.
Significant increase in data breaches in 2008 - 1.7.2009
Despite more intelligent IT managers and security programs, there was a rise in data-loss incidents last year when compared to 2007.
Google one of the worst spam providers - 1.7.2009
Spamhaus has ranked Google as the third worst spam service provider, below the sites sistemnet.com.tr and hostfresh.com.
European police forces encouraged to hack? - 1.6.2009
In an effort to gain some ground on cybercriminals, it appears police forces all over Europe are being encouraged to "resort to remote searches" as another mode of surveillance, BBC News reports.
Online propaganda war escalates - 1.6.2009
More than 10,000 websites have been defaced or compromised by hackers in an effort to show their pro-Palestinian support during the ongoing Gaza Strip conflict.


