Security woes continue at Adobe, which is warning about a new unpatched zero-day flaw in its Flash media-player technology, which could enable a hacker to take control of a user's system.
I want to backup my SQL Server databases to a folder, but I want to minimize who has access to the folder. In other words, I want to make sure that members of the Windows Local Administrators group don't get to the backups without intentionally trying to bypass the security. How do I do that?
Is your SQL Database under Version Control?SSMS plug-in SQL Source Control connects SVN, TFS, Git, Hg and all others to SQL Server. Learn more.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-1573 Cryptographic Issues vulnerability
5.0
gnutls
Solaris 11
11/11 SRU 12.4
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2009-4270 Denial of Service (DoS) vulnerability
9.3
Ghostscript
Solaris 10
SPARC: 122259-05 X86: 122260-05
CVE-2010-1628 Memory Corruption vulnerability
9.3
CVE-2010-1869 Buffer Overflow vulnerability
9.3
CVE-2010-2055 Arbitrary Code Execution vulnerability
7.2
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-0465 Improper Input Validation vulnerability
9.3
X.Org
Solaris 10
SPARC: 147227-01 X86: 147228-01
Solaris 9
Contact Support
Solaris 8
Contact Support
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-3461 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
4.3
libotr
Solaris 11
11/11 SRU 12.4
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2009-2260 Information Exposure vulnerability
5.0
Stardict
Solaris 11
11/11 SRU 12.4
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-4619 Denial of Service (DoS) vulnerability
5.0
OpenSSL
Solaris 10
SPARC: 147707-03 X86: 146672-04
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2009-2409 Cryptographic Issues vulnerability
5.1
OpenSSL
Solaris 10
SPARC: 147707-02 X86: 146672-03
Solaris 9
Contact Support
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
<b>Help Net Security:</b> "The latest version of Passware Kit Forensic has become the first commercially available software to break TrueCrypt hard drive encryption without applying a time-consuming brute-force attack. It was also the first product to decrypt BitLocker drives."
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-3905 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
5.0
libxml2
Solaris 11
Contact Support
Solaris 10
SPARC: 125731-07 X86: 125732-07
Solaris 9
Contact Support
CVE-2011-3919 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
7.5
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-2821 Resource Management Errors vulnerability
7.5
libxml2
Solaris 11
Contact Support
Solaris 10
SPARC: 125731-07 X86: 125732-07
Solaris 9
Contact Support
CVE-2011-2834 Resource Management Errors vulnerability
6.8
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
Oracle Magazine September/October features articles on Oracle Database 11g, data security, Oracle embedded databases, Oracle Partitioning, Oracle SecureFiles, Oracle Migration Workbench, and much more.
The next patch Tuesday ( the second Tuesday of the month) is expcted to be big. Since several of the issues being fixed are already being exploited, the patches should be applied sooner rather than later.
http://www.microsoft.com/technet/security/Bulletin/MS11-feb.mspx
http://news.cnet.com/8301-1009_3-20030613-83.html?tag=mncol;title
http://www.computerworld.com/s/article/9208038/Microsoft_to_patch_22_bugs_3_zero_days_next_week?taxonomyId=17
<b>Datamation:</b> "It's not like Google was ever going to be a showcase customer for Microsoft, but a report that the search giant is phasing out Microsoft Windows underscores security concerns that have long dogged the widely-used software."
<b>IT Wire:</b> "The new IPFire distribution seeks to take security to the highest level while also making things a breeze for the less experienced to set up."
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2010-4008 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
4.3
libxml2
Solaris 10
SPARC: 125731-07 X86: 125732-07
Solaris 11
Contact Support
This notification describes vulnerabilities fixed in third-party components that are included in Sun's product distribution.Information about vulnerabilities affecting Oracle Sun products can be found on Oracle Critical Patch Updates and Security Alerts page.
According to a report by messaging security specialist MessageLabs, spam now accounts for close to 90 percent of all e-mail traffic....Did you know that DotNetSlackers also publishes .net articles written by top known .net Authors? We already have over 80 articles in several categories including Silverlight. Take a look: here.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-3102 Numeric Errors vulnerability
10.0
libxml2
Solaris 11
11/11 SRU 10.5
Solaris 10
SPARC : 125731-08 , x86 : 125732-08
Solaris 9
Contact Support
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-3488 Permissions, Privileges, and Access Controls vulnerability
5.8
PostgreSQL
Solaris 10
SPARC : 138822-11 , 138824-11 , 138826-11 x86 : 138823-11 , 138825-11 , 138827-11
CVE-2012-3489 Improper Input Validation vulnerability
5.0
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-2728 Denial of Service (DoS) vulnerability
4.3
Perl 5.6
Solaris 10
SPARC: 146032-03 X86: 146033-03
Solaris 9
Patches planned but not yet available
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
<b>eSecurity Planet: </b>"AT&T has 'turned off the feature' that made it possible for an independent security watchdog group to easily penetrate the telco's data networks to access the e-mail addresses of more than 114,000 Apple iPad 3G owners."
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-3524 Permissions, Privileges, and Access Controls vulnerability
6.9
libdbus
Solaris 11
11/11 SRU 12.4
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-4245 Arbitrary code execution vulnerability
6.8
Gimp
Solaris 11
11/11 SRU 12.4
Solaris 10
Contact Support
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
Just wondering, assuming no security issues, that is, you're in total control of the command passed to exec(), is there a difference (in terms of speed or standards) between using exec() vs native PHP?
Example just to name a few use cases:
Using the DirectoryIterator vs exec(ls -1, $output), to list all files.
List 100 files from the 99th file onwards (that is, file 100 to 199)
Count total number of files in directory.