August 31, 2005
Revision Note: Advisory published.Summary: Microsoft has received a report of an unexpected behavior in the way that the Windows Firewall User Interface handles malformed entries in the Windows Registry. By creating malformed Windows Firewall exception entries in the Windows Registry, an exception could be created in the firewall that would not be displayed in the Windows Firewall User Interface. However, this exception is displayed by the command line firewall administration tools. It is important to note that this is not a vulnerability. Administrative privileges are required to access the associated section of the Windows Registry that contains this configuration information. By using documented methods to manage and create Windows Firewall exceptions, it is unlikely that a malformed registry entry will be produced which would exhibit this behavior. It is more likely that an attacker who has already compromised the system would create such malformed registry entries with intent to confuse a user. Microsoft plans to include an update to address this concern as part of a future service pack on the affected supported platforms.
Source
Related Posts
(
Microsoft Security Advisory (906574): Clarification of Simple File Sharing and ForceGuest) (
Microsoft Security Advisory (916208): Adobe Security Bulletin: APSB06-03 Flash Player Update to Address Security Vulnerabilities) (
Microsoft Security Advisory (917077): Vulnerability in the way HTML Objects Handle Unexpected Method Calls Could Allow Remote Code Execution) (
Microsoft Security Advisory (916208): Adobe Security Bulletin: APSB06-03 Flash Player Update to Address Security Vulnerabilities) (
Microsoft Security Advisory (928604): Exploit Code Published Affecting the Workstation Service on Windows 2000)
August 24, 2005
Severity Rating: Important - Revision Note: Bulletin updated for additional clarity regarding order of installation of MS04-018 and MS05-030 updates. For additional information please see the “Frequently asked questions (FAQ) related to this security update” section.Summary: This update resolves a newly-discovered, privately-reported vulnerability. The vulnerability is documented in the “Vulnerability Details” section of this bulletin. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. We recommend that customers apply the update at the earliest opportunity.
Source
Related Posts
(
MS07-056 - Critical: Security Update for Outlook Express and Windows Mail (941202) - Version:2.0) (
MS06-068: Vulnerability in Microsoft Agent Could Allow Remote Code Execution (920213) - Version:1.2) (
MS08-015 - Critical: Vulnerability in Microsoft Outlook Could Allow Remote Code Execution (949031) - Version:1.1) (
MS05-043: Vulnerability in the Print Spooler Service Could Allow Remote Code Execution (896423) - Version:1.2) (
MS06-027: Vulnerability in Microsoft Word Could Allow Remote Code Execution (917336) - Version:1.3)
August 23, 2005
Filed under:
SEO — Administrator @ 10:36 am
On a recent search engine conference, Tim Mayer from Yahoo, Matt Cutts from Google and Kaushal Kurapti from Ask Jeeves revealed information on how these three search engines analyze links to determine the ranking of web pages in a public discussion.
Related Posts
(
One-way links, reciprocal links, three-way-links. What’s best?) (
Do no-follow links count for search engine rankings?) (
Is link popularity really that important?) (
Is Amazon’s A9 search engine really that good?) (
The effect of unnatural linking patterns on your search engine rankings)
Revision Note: Advisory published.Summary: Microsoft has issued this Security Advisory to clarify information of the issue addressed in Security Bulletin MS05-039 for non-default configurations of Windows XP Service Pack 1. This feature is known as “Simple File Sharing and ForceGuest.” If you are using Windows XP Service Pack 2, enabling Simple File Sharing and ForceGuest does not increase your level of exposure to the MS05-039 security vulnerability. Also, customers that have applied the security update included with MS05-039 are not impacted by this issue. We recommend that customers continue to follow our Protect Your PC guidance of enabling a firewall, getting software updates and installing anti-virus software. Customers can learn more about these steps by visiting the Protect Your PC Web site.
Source
Related Posts
(
Microsoft Security Advisory (937696): Release of Microsoft Office Isolated Conversion Environment (MOICE) and File Block Functionality for Microsoft Office) (
Microsoft Security Advisory (912945): Non-Security Update for Internet Explorer) (
Microsoft Security Advisory (912945): Non-Security Update for Internet Explorer) (
Microsoft Security Advisory (922437): Exploit Code Published Affecting the Server Service) (
Microsoft Security Advisory (929433): Vulnerability in Microsoft Word Could Allow Remote Code Execution)
August 17, 2005
Severity Rating: Critical - Revision Note: Bulletin updated to clarify text provided in the “Workarounds” section.Summary: This update resolves a newly-discovered, privately-reported vulnerability. A vulnerability exists in the Print Spooler service that could allow remote code execution. The vulnerability is documented in the “Vulnerability Details” section of this bulletin. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. We recommend that customers apply the update immediately.
Source
Related Posts
(
MS05-043: Vulnerability in the Print Spooler Service Could Allow Remote Code Execution (896423) - Version:1.2) (
MS06-063: Vulnerability in Server Service Could Allow Denial of Service and Remote Code Execution (923414) - Version:1.1) (
MS05-046: Vulnerability in the Netware Client Could Allow Remote Code Execution (899589) - Version:1.0) (
MS07-046 - Critical: Vulnerability in GDI Could Allow Remote Code Execution (938829) - Version:1.1) (
MS06-027: Vulnerability in Microsoft Word Could Allow Remote Code Execution (917336) - Version:1.3)
August 16, 2005
Filed under:
SEO — Administrator @ 10:36 am
Some webmasters also use the Keyword Effectiveness Index (KEI) to determine the value of their keywords. Does it really make sense to choose keywords that way and is KEI something you should use for your keywords?
Related Posts
(
Why Jim didn’t make profit with his Internet business, part 2) (
Google’s Matt Cutts: do not stuff your keywords) (
Keywords and search engine optimization) (
Outperform your competitors with better keywords) (
Find the keywords that convert to sales)
August 9, 2005
Filed under:
SEO — Administrator @ 10:36 am
Although many articles have been written about finding the best keywords for SEO, many webmasters still target the wrong keywords. Choosing the right keywords is a crucial step in every search engine optimization campaign.
Related Posts
(
The final goal of search engine optimization) (
The risk of over-optimization) (
How to succeed with search engine optimization) (
One year of search engine optimization) (
Search engine optimization: which file ending is better?)
August 8, 2005
Novell and MySQL AB today announced an agreement to deliver enhanced,
combined support for key components of the popular open source LAMP
infrastructure stack. Under the reseller and joint-support agreement, the
only accord of its kind between a Linux vendor and MySQL AB, Novell will now
offer subscriptions to the MySQL Network commercial database service
directly to its customers.
Source
Related Posts
(
Dell to Offer MySQL Network) (
HP Extends Open Source Services to MySQL Software) (
MySQL AB to Offer Low-Cost, High Availability Solution for Business-Critical LAMP Applications) (
Tourism as social network) (
Novell Case Study: LA Gym Equipment)
August 7, 2005
Available to Dell customers are new support offerings for key elements of the LAMP (Linux, Apache, MySQL and PHP/Perl) stack. MySQL Network
subscriptions are now available direct from Dell. Customers can now turn to Dell for an end-to-end LAMP solution stack comprised of PowerEdge servers, Red Hat Enterprise Linux or Novell SUSE Linux Enterprise Server operating systems, MySQL database application, MySQL Network, JBoss application server software and JBoss Network.
More information on maximizing data availability with MySQL applications on Dell PowerEdge servers is available at www.dell.com/mysql.
Source
Related Posts
(
Novell to Offer MySQL Network) (
HP Extends Open Source Services to MySQL Software) (
MySQL AB to Offer Low-Cost, High Availability Solution for Business-Critical LAMP Applications) (
Tourism as social network) (
RAID and Scale Out Discussions)