Patch Management - Infoworld http://www.infoworld.com/t/2113 en Three's a charm? Windows 8 patches could pave multiple paths to Windows 9 http://www.infoworld.com/t/microsoft-windows/threes-charm-windows-8-patches-could-pave-multiple-paths-windows-9-240633?source=rss_patch_management <div id="tw-edit" style="padding: 8px; background: none no-repeat scroll center top #ffffff; position: relative; float: right; width: 243px; height: 182px;"><img src="http://www.infoworld.com/sites/infoworld.com/files/media/image/Microsoft_Windows_hp.jpg" alt="Three's a charm? Windows 8 patches could pave multiple paths to Windows 9" width="243" height="182" align="right" /></div><p>Trying to piece together the puzzle created by Microsoft's new patching policy, I was struck by an intriguing thought.</p> Microsoft Windows Microsoft Windows 8 Microsoft Windows Patch Management Wed, 16 Apr 2014 19:11:03 +0000 InfoWorld Tech Watch 240633 at http://www.infoworld.com Oracle identifies products affected by Heartbleed, but work remains on fixes http://www.infoworld.com/d/security/oracle-identifies-products-affected-heartbleed-work-remains-fixes-240629?source=rss_patch_management <p>Oracle has issued a comprehensive list of its software that may or may not be affected by the OpenSSL (secure sockets layer) vulnerability known as <a href="http://www.infoworld.com/t/security/5-no-bull-facts-you-need-know-about-heartbleed-right-now-240269">Heartbleed</a>, while warning that no fixes are yet available for some likely affected products.</p> Security Oracle Web Services Patch Management Vulnerability Assessment Wed, 16 Apr 2014 15:51:54 +0000 admin 240629 at http://www.infoworld.com Microsoft slashed Windows XP custom support prices just days before axing public patches http://www.infoworld.com/d/microsoft-windows/microsoft-slashed-windows-xp-custom-support-prices-just-days-axing-public-patches-240623?source=rss_patch_management <p>Just days before Microsoft retired Windows XP from public support, the company drastically reduced the price of custom support agreements that give large companies and government agencies another year of XP patches, experts reported today.</p> Microsoft Windows Security Microsoft Windows XP Microsoft Windows Patch Management Security Wed, 16 Apr 2014 14:45:31 +0000 admin 240623 at http://www.infoworld.com Rushed Heartbleed fixes may expose users to new attacks http://www.infoworld.com/d/security/rushed-heartbleed-fixes-may-expose-users-new-attacks-240597?source=rss_patch_management <p>In the race to protect themselves from the <a href="http://www.infoworld.com/t/security/5-no-bull-facts-you-need-know-about-heartbleed-right-now-240269">Heartbleed</a> vulnerability, enterprises could be opening themselves up to new attacks if they aren't careful.</p> <p>Perpetrators of some of the most virulent cyberattacks on the Internet will try to take advantage of the chaos that's bound to occur in some IT shops as administrators and developers hurriedly respond to Heartbleed, the widespread OpenSSL flaw that was discovered last week, a top researcher at Kaspersky Lab said.</p> Security Encryption Open Source Software Patch Management Vulnerability Assessment Wed, 16 Apr 2014 11:16:08 +0000 admin 240597 at http://www.infoworld.com VMware promises Heartbleed patches for affected products by the weekend http://www.infoworld.com/d/security/vmware-promises-heartbleed-patches-affected-products-the-weekend-240538?source=rss_patch_management <p>VMware started patching its products against <a href="http://www.infoworld.com/t/security/5-no-bull-facts-you-need-know-about-heartbleed-right-now-240269">the critical Heartbleed flaw</a> that puts encrypted communications at risk, and plans to have updates ready for all affected products by Saturday.</p> Security Encryption Patch Management Vulnerability Assessment Tue, 15 Apr 2014 16:13:16 +0000 admin 240538 at http://www.infoworld.com Google patches Android icon permissions attack http://www.infoworld.com/d/security/google-patches-android-icon-permissions-attack-240495?source=rss_patch_management <p>Google has issued a patch for an attack that could lead an Android user to a phishing site, according to security vendor FireEye. FireEye recently spotted an malicious Android application that could modify the icons of other applications so that when they're launched, they send victims to a phishing website.</p> <p>The malware is abusing a set of permissions known as "com.android.launcher.permission.READ_SETTINGS" and "com.android.launcher.permission.WRITE_SETTINGS."</p> Mobile Technology Security Google Android Mobile Security Malware Patch Management Phishing Tue, 15 Apr 2014 11:39:01 +0000 admin 240495 at http://www.infoworld.com Server makers rushing out Heartbleed patches http://www.infoworld.com/d/security/server-makers-rushing-out-heartbleed-patches-240476?source=rss_patch_management <p>Enterprise IT vendors are rushing to protect users from the Heartbleed bug, which has been found in some servers and networking gear and could allow attackers to steal critical data -- including passwords and encryption keys -- from the memories of exposed systems.</p> <p>Hewlett-Packard, Dell, and IBM have set up pages that identify hardware and software products affected by Heartbleed, which exposes a critical defect in certain versions of OpenSSL, a software library for secure communication over the Internet and networks.</p> Computer Hardware Security Servers Patch Management Mon, 14 Apr 2014 21:19:18 +0000 admin 240476 at http://www.infoworld.com Microsoft confirms it's dropping Windows 8.1 support http://www.infoworld.com/t/microsoft-windows/microsoft-confirms-its-dropping-windows-81-support-240407?source=rss_patch_management <div id="tw-edit" style="padding: 8px; background: none no-repeat scroll center top #ffffff; position: relative; float: right; width: 243px; height: 182px;"><img src="http://www.infoworld.com/sites/infoworld.com/files/media/image/windows_updates_hp.jpg" alt="Microsoft confirms it's dropping Windows 8.1 support" width="243" height="182" align="right" /></div><p>In what is surely the most customer-antagonistic move of the new Windows regime, Steve Thomas at Microsoft posted a TechNet article on Saturday stating categorically that <a href="http://blogs.technet.com/b/gladiatormsft/archive/2014/04/ Microsoft Windows Security Microsoft Windows 8 Microsoft Windows Patch Management Mon, 14 Apr 2014 11:15:41 +0000 InfoWorld Tech Watch 240407 at http://www.infoworld.com Don't overlook URL fetching agents when fixing Heartbleed flaw on servers, researchers say http://www.infoworld.com/d/security/dont-overlook-url-fetching-agents-when-fixing-heartbleed-flaw-servers-researchers-say-240335?source=rss_patch_management <p>Website operators should assess their whole Web infrastructure when patching <a href="http://www.infoworld.com/d/security/the-heartbleed-openssl-flaw-worse-you-think-240231">the critical Heartbleed flaw in OpenSSL</a>, otherwise they risk leaving important components open to remote attacks, despite fixing the problem on their publicly facing servers.</p> Security Encryption Patch Management Security Tools Vulnerability Assessment Fri, 11 Apr 2014 15:44:51 +0000 admin 240335 at http://www.infoworld.com Website operators will have a hard time dealing with the Heartbleed vulnerability http://www.infoworld.com/d/security/website-operators-will-have-hard-time-dealing-the-heartbleed-vulnerability-240305?source=rss_patch_management <p>Website and server administrators will have to spend considerable time, effort, and money to mitigate all the security risks associated with <a href="http://heartbleed.com/" target="_blank">Heartbleed</a>, one of the most severe vulnerabilities to endanger encrypted SSL communications in recent years.</p> Security Encryption Open Source Software Patch Management Vulnerability Assessment Fri, 11 Apr 2014 11:48:48 +0000 admin 240305 at http://www.infoworld.com Adobe patches a critical flaw in Flash Player and AIR shown at Pwn2Own contest http://www.infoworld.com/d/security/adobe-patches-critical-flaw-in-flash-player-and-air-shown-pwn2own-contest-240152?source=rss_patch_management <p>Adobe Systems released security updates for Flash Player and AIR in order to address four critical vulnerabilities that could lead to arbitrary code execution and information disclosure.</p> Security Adobe Adobe Flash Patch Management Vulnerability Assessment Wed, 09 Apr 2014 13:07:55 +0000 admin 240152 at http://www.infoworld.com Is Windows Update's huge Visio 2013 patch a joke? http://www.infoworld.com/t/patch-management/windows-updates-huge-visio-2013-patch-joke-240140?source=rss_patch_management <div id="tw-edit" style="padding: 8px; background: none no-repeat scroll center top #ffffff; position: relative; float: right; width: 243px; height: 182px;"><img src="http://www.infoworld.com/sites/infoworld.com/files/media/image/Microsoft_hp.jpg" alt="Is Windows Update's huge Visio 2013 patch a joke?" width="243" height="182" align="right" /></div><p>What in the world is going on with Microsoft's Visio?</p> Microsoft Windows Microsoft Microsoft Windows Patch Management Wed, 09 Apr 2014 10:30:00 +0000 InfoWorld Tech Watch 240140 at http://www.infoworld.com Microsoft Patch Tuesday bids adieu to Windows XP http://www.infoworld.com/d/security/microsoft-patch-tuesday-bids-adieu-windows-xp-240131?source=rss_patch_management <p>This month's "Patch Tuesday" includes the final round of security fixes Microsoft will issue for Windows XP, potentially leaving millions that continue to use the OS open to attack.</p> Microsoft Windows Security Microsoft Windows XP Microsoft Windows Patch Management Wed, 09 Apr 2014 10:00:00 +0000 admin 240131 at http://www.infoworld.com Microsoft yanks SharePoint 2013 Service Pack 1, KB 2817429 http://www.infoworld.com/t/microsoft-windows/microsoft-yanks-sharepoint-2013-service-pack-1-kb-2817429-239969?source=rss_patch_management <div id="tw-edit" style="padding: 8px; background: none no-repeat scroll center top #ffffff; position: relative; float: right; width: 243px; height: 182px;"><img src="http://www.infoworld.com/sites/infoworld.com/files/media/image/07OPenterwin_hp.jpg" alt="Microsoft yanks SharePoint 2013 Service Pack 1, KB 2817429" width="243" height="182" align="right" /></div><p>On Feb. 25, Microsoft announced that <a href="http://blogs.office.com/2014/02/25/office-2013-service-pack-1-now-available/" target="_blank">SharePoint 2013 Service Pack 1 was available</a> at the Microsoft Download Center. Applications Microsoft Windows Microsoft Microsoft SharePoint Microsoft Windows Office Software Patch Management Mon, 07 Apr 2014 11:12:53 +0000 InfoWorld Tech Watch 239969 at http://www.infoworld.com Microsoft sketches out final Windows XP security updates for next week http://www.infoworld.com/d/microsoft-windows/microsoft-sketches-out-final-windows-xp-security-updates-next-week-239833?source=rss_patch_management <p>Microsoft today said it will ship four security updates to customers next week that will include the final public fixes for flaws in Windows XP and Office 2003, both slated for retirement from security support on Tuesday.</p> <p>Of the four updates, two were tagged "critical," Microsoft's most serious threat rating, and the other pair was marked "important," the next step down in the firm's four-part scoring system.</p> Microsoft Windows Security Microsoft Office Windows XP Microsoft Windows Office Software Patch Management Thu, 03 Apr 2014 19:33:42 +0000 admin 239833 at http://www.infoworld.com Apple patches Safari's Pwn2Own vulnerability, two-dozen other critical bugs http://www.infoworld.com/d/security/apple-patches-safaris-pwn2own-vulnerability-two-dozen-other-critical-bugs-239630?source=rss_patch_management <p>Apple on Tuesday patched the security vulnerability in Safari that was successfully exploited at last month's Pwn2Own hacking contest, where a team cracked the browser to win $65,000.</p> <p>The Cupertino, Calif. company seeded <a href="http://support.apple.com/kb/HT6181" target="_blank">updates</a> for both Safari 6 and Safari 7 yesterday, promoting the former to version 6.1.3 and the latter to 7.0.3.</p> Security Apple Application Security Mac Software Patch Management Web Browsers Wed, 02 Apr 2014 11:59:33 +0000 admin 239630 at http://www.infoworld.com Proprietary firmware poses a security threat, Ubuntu founder says http://www.infoworld.com/d/security/proprietary-firmware-poses-security-threat-ubuntu-founder-says-238635?source=rss_patch_management <p>Mark Shuttleworth, the founder of the popular Ubuntu Linux distribution, believes proprietary and unverifiable firmware code poses a serious security threat to users and he encourages hardware manufacturers to implement support for their innovations through the Linux kernel instead.</p> <p>"If you read the catalogue of spy tools and digital weaponry provided to us by Edward Snowden, you'll see that firmware on your device is the NSA's best friend," Shuttleworth said Monday in a <a href="http://www.markshuttleworth.com/archives/1332" target="_blank">blog post</a>.</p> Security Patch Management Security Tools Vulnerability Assessment Security Tue, 18 Mar 2014 21:34:13 +0000 admin 238635 at http://www.infoworld.com Adobe patches a critical vulnerability in Shockwave Player http://www.infoworld.com/d/security/adobe-patches-critical-vulnerability-in-shockwave-player-238334?source=rss_patch_management <p>Adobe Systems released a new security update for Shockwave Player in order to fix a critical vulnerability that could allow attackers to remotely take control of affected systems.</p> <p>The vulnerability, identified as CVE-2014-0505, is the result of a memory corruption issue and can lead to arbitrary code execution. According to Adobe, the flaw was privately reported to the company and there are no reports of active exploits targeting it in the wild.</p> Security Patch Management Security Tools Vulnerability Assessment Thu, 13 Mar 2014 18:00:01 +0000 admin 238334 at http://www.infoworld.com Adobe patches two important vulnerabilities in Flash Player http://www.infoworld.com/d/security/adobe-patches-two-important-vulnerabilities-in-flash-player-238234?source=rss_patch_management <p>Adobe released updates for Flash Player that fix two vulnerabilities that could allow attackers to bypass security controls in the software.</p> Security Adobe Flash Patch Management Security Tools Vulnerability Assessment Wed, 12 Mar 2014 14:02:17 +0000 admin 238234 at http://www.infoworld.com Microsoft Patch Tuesday rounds up IE flaws http://www.infoworld.com/d/security/microsoft-patch-tuesday-rounds-ie-flaws-238197?source=rss_patch_management <p>For this month's "Patch Tuesday" round of bug fixes, Microsoft has focused on correcting multiple vulnerabilities in Internet Explorer (IE), including one that is already being used in targeted attacks.</p> Security Malware Patch Management Vulnerability Assessment Wed, 12 Mar 2014 12:20:39 +0000 admin 238197 at http://www.infoworld.com