Security NewsSecurity News

Security News

News

Notes

Some companies — notably Microsoft — publish much more information about problems. This is not because their products are more prone to problems: it is because these companies make more products, or make a stronger effort to fix problems and inform customers.

Some companies don't release security fixes for old but widely used products: e.g. Microsoft doesn't support Windows 2000. Users are advised to upgrade to newer products, but many new products can't run on old PCs: such PCs will become increasingly vulnerable as time goes on.

For virus news see the Symantec Security Response Center or the Microsoft Virus Alert Center

Here are recent security fixes and tools to deal with security fixes:

February 2012

New This Week Feb 1, 2012 - Apple - OS X 10.7 (Lion): fix for many security vulnerabilities. [get it…]

January 2012

Jan 23, 2012 - Google - Chrome Browser: 16.0.912.77 issued, fixing 5 security vulnerabilities. [get it…]

Jan 10, 2012 - Microsoft - Anti-Cross Site Scripting Library 3.x, 4.0: fix for information disclosure vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for information disclosure vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003, Vista, Server 2008: fix for elevation of privilege vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003: fix for remote code execution vulnerability. [get it…]

Jan 10, 2012 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for security feature bypass vulnerability. [get it…]

Jan 5, 2012 - Google - Chrome Browser: 16.0.912.75 issued, fixing 3 security vulnerabilities. [get it…]

December 2011

Dec 29, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerabilities. [get it…]

Dec 21, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 9.0 issued to fix bugs and security vulnerabilities. [get it…]

Dec 20, 2011 - Mozilla Corporation - Firefox Browser 4, 5, 6, 7, 8: 9.0 issued to add features, fix bugs, and fix security vulnerabilities. [get it…]

Dec 20, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 2.6 issued to add features, fix bugs, and fix security vulnerabilities. [get it…]

Dec 13, 2011 - Google - Chrome Browser: 16.0.912.63 issued, fixing 15 security vulnerabilities. [get it…]

Dec 13, 2011 - Microsoft - Internet Explorer 6, 7, 8, 9: cumulative security update fixing 3 new vulnerabilities. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Office 2003; Office for Mac 2004: fix for remote code execution vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Office 2007, 2010; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Office PowerPoint Viewer 2007: fix for remote code execution vulnerabilities. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003: fix for remote code execution vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Vista, 7: fix for remote code execution vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Office 2003: fix for remote code execution vulnerabilities. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: update of activeX kill bits. [get it…]

Dec 13, 2011 - Microsoft - Office 2007, 2010; Office for Mac 2011: fix for remote code execution vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Office 2010: fix for elevation of privilege vulnerability. [get it…]

Dec 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

November 2011

Nov 16, 2011 - Google - Chrome Browser: 15.0.874.121 issued, fixing a security vulnerability. [get it…]

Nov 10, 2011 - Google - Chrome Browser: 15.0.874.120 issued, fixing 8 security vulnerabilities. [get it…]

Nov 8, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Nov 8, 2011 - Microsoft - Windows Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Nov 8, 2011 - Microsoft - Windows Server 2008, 7: fix for denial of service vulnerability. [get it…]

Nov 8, 2011 - Microsoft - Windows Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Nov 8, 2011 - Mozilla Corporation - Firefox Browser 4, 5, 6, 7: 8.0 issued to add features, fix bugs, and fix security vulnerabilities. [get it…]

Nov 8, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.24 issued to fix bugs and security vulnerabilities. [get it…]

October 2011

Oct 25, 2011 - Google - Chrome Browser: 15.0.874.102 issued, fixing 28 security vulnerabilities. [get it…]

Oct 19, 2011 - Opera Software - Opera Browser Suite: 11.52 issued to fix bugs and a security vulnerability. [get it…]

Oct 12, 2011 - Apple - Safari Browser 5.1: 5.1.1 issued to fix 43 vulnerabilities. [get it…]

Oct 12, 2011 - Apple - OS X 10.7 (Lion): fix for many security vulnerabilities. [get it…]

Oct 11, 2011 - Microsoft - Host Integration Server 2004, 2006, 2009, 2010: fix for denial of service vulnerabilities. [get it…]

Oct 11, 2011 - Microsoft - Internet Explorer 6, 7, 8, 9: cumulative security update fixing 8 new vulnerabilities. [get it…]

Oct 11, 2011 - Microsoft - Windows XP, Server 2003: fix for elevation of privilege vulnerability. [get it…]

Oct 11, 2011 - Microsoft - Forefront Unified Access Gateway 2010: fix for remote code execution vulnerabilities. [get it…]

Oct 11, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Oct 11, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerabilities. [get it…]

Oct 11, 2011 - Microsoft - Windows Vista, 7: fix for remote code execution vulnerability. [get it…]

Oct 11, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Oct 4, 2011 - Google - Chrome Browser: 14.0.835.202 issued, fixing 9 security vulnerabilities. [get it…]

September 2011

Sep 6, 2011 - Mozilla Corporation - Firefox Browser 4, 5, 6: 7.0 issued to add features, fix bugs, and fix security vulnerabilities. [get it…]

Sep 27, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.23 issued to fix bugs and security vulnerabilities. [get it…]

Sep 27, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 7.0 issued to fix bugs and security vulnerabilities. [get it…]

Sep 20, 2011 - Google - Chrome Browser: 14.0.835.186 issued to fix a security vulnerability. [get it…]

Sep 16, 2011 - Google - Chrome Browser: 14.0.835.163 issued to add features and to fix security vulnerabilities. [get it…]

Sep 13, 2011 - Microsoft - Office Forms Server 2007; Office Groove 2007; Office Groove Data Bridge Server 2007; Office Groove Management Server 2007; Office Groove Server 2010; SharePoint Foundation 2010; Office Web Apps 2010; SharePoint Server 2007, 2010; SharePoint Services 2.0, 3.0 SharePoint WorkSpace 2010: fix for elevation of privilege vulnerabilities. [get it…]

Sep 13, 2011 - Microsoft - Office 2003, 2007, 2010: fix for remote code execution vulnerabilities. [get it…]

Sep 13, 2011 - Microsoft - Excel Viewer; Office 2003, 2007, 2010; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Office for Mac 2004, 2008, 2011; Office for Mac Open XML File Format Converter: fix for remote code execution vulnerabilities. [get it…]

Sep 13, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Sep 13, 2011 - Microsoft - Windows Server 2003, Server 2008: fix for elevation of privilege vulnerability. [get it…]

Sep 9, 2011 - Apple - OS X 10.6 (Snow Leopard), 10.7 (Lion): fix for 1 security vulnerability. [get it…]

Sep 9, 2011 - Mozilla Corporation - Camino Browser: 2.0.8 issued to fix bugs and security vulnerabilities. [get it…]

Sep 6, 2011 - Mozilla Corporation - Firefox Browser 4, 5, 6: 6.0.2 issued to fix a bug and a security vulnerability. [get it…]

Sep 6, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 6.0.2 issued to fix a bug and a security vulnerability. [get it…]

Sep 6, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 6.0.2 issued to fix a bug and a security vulnerability. [get it…]

Sep 6, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 6.0.2 issued to fix bugs and security vulnerabilities. [get it…]

Sep 3, 2011 - Google - Chrome Browser: 13.0.782.220 issued to fix a security vulnerability. [get it…]

Sep 1, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 6.0.1 issued to fix bugs and security vulnerabilities. [get it…]

Sep 1, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 3.1.13 issued to fix bugs and security vulnerabilities. [get it…]

August 2011

Aug 30, 2011 - Google - Chrome Browser: 13.0.782.218 issued to fix a security vulnerability. [get it…]

August 30, 2011 - Mozilla Corporation - Firefox Browser 6.0.x: 6.0.1 issued to fix 1 security vulnerability. [get it…]

August 30, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.21 issued to fix bugs and 1 security vulnerability. [get it…]

August 30, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 2.3.2 issued to fix a security vulnerability. [get it…]

Aug 22, 2011 - Google - Chrome Browser: 13.0.782.215 issued to fix 11 security vulnerabilities. [get it…]

August 16, 2011 - Mozilla Corporation - Firefox Browser 6.0: 6.0 issued to add features, fix bugs, and fix 7 security vulnerabilities; this replaces 5.0.x. [get it…]

August 16, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.20 issued to fix bugs and 7 security vulnerabilities. [get it…]

August 16, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 2.3 issued to fix bugs and 7 security vulnerabilities. [get it…]

Aug 9, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for information disclosure vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows Vista, Server 2008, 7: fix for denial of service vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Visual Studio 2005; Report Viewer 2005 Redistributable Package: fix for information disclosure vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for information disclosure vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows XP, Server 2003: fix for denial of service vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows Vista, Server 2008, 7: fix for denial of service vulnerabilities. [get it…]

Aug 9, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows XP, Server 2003: fix for elevation of privilege vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows Server 2008: fix for elevation of privilege vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Visio 2003, 2007, 2010: fix for remote code execution vulnerabilities. [get it…]

Aug 9, 2011 - Microsoft - Windows Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Aug 9, 2011 - Microsoft - Windows Server 2003, Server 2008: fix for remote code execution vulnerabilities. [get it…]

Aug 9, 2011 - Microsoft - Internet Explorer 6, 7, 8, 9: cummulative security update. [get it…]

Aug 2, 2011 - Google - Chrome Browser: 13.0.782.107 issued to add features and to fix many security vulnerabilities. [get it…]

July 2011

Jul 20, 2011 - Apple - Safari Browser 5.1: 5.1 issued to fix 57 vulnerabilities. [get it…]

Jul 20, 2011 - Apple - Safari Browser 5.0.6: 5.0.6 issued to fix 57 vulnerabilities. [get it…]

Jul 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Jul 12, 2011 - Microsoft - Visio 2003: fix for remote code execution vulnerability. [get it…]

Jul 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerability. [get it…]

Jul 12, 2011 - Microsoft - Windows Vista, 7: fix for remote code execution vulnerability. [get it…]

June 2011

Jun 28, 2011 - Google - Chrome Browser: 12.0.742.112 issued to fix 7 security vulnerabilities. [get it…]

June 23, 2011 - Apple - OS X 10.6 (Snow Leopard): fix for 38 security vulnerabilities. [get it…]

June 21, 2011 - Mozilla Corporation - Firefox Browser 5.0: 5.0 issued to add features, fix bugs, and fix 8 security vulnerabilities; this replaces 4.0.x. [get it…]

June 21, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.18 issued to fix bugs and 6 security vulnerabilities. [get it…]

June 21, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 3.1.11 issued to fix bugs and security vulnerabilities. [get it…]

June 14, 2011 - Adobe - Acrobat 10.1; Acrobat Reader 10.1: fix for multiple security vulnerabilities. [get it…]

June 14, 2011 - Adobe - Acrobat 9.4.5; Acrobat Reader 9.4.5: fix for multiple security vulnerabilities. [get it…]

Jun 14, 2011 - Google - Chrome Browser: 12.0.742.100 issued to fix a security vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Internet Explorer 6, 7, 8, 9: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows Server 2003, Server 2008: fix for elevation of privilege vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Internet Explorer 6, 7, 8, 9: cummulative security update. [get it…]

Jun 14, 2011 - Microsoft - InfoPath 2007, 2010; SQL Server 2005, 2008; SQL Server 2005 Express Edition with Advanced Services; SQL Server Management Studio Express (SSMSE) 2005: fix for information disclosure vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows Vista, 7, Server 2008: fix for denial of service vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows Server 2008: fix for denial of service vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for elevation of privilege vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Excel Viewer; Office XP, 2003, 2007, 2010; Office for Mac 2004, 2008, 2011; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Open XML File Format Converter for Mac: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Forefront Threat Management Gateway 2010 Client: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for remote code execution vulnerability. [get it…]

Jun 14, 2011 - Microsoft - Windows XP, Server 2003, Vista, 7, Server 2008: fix for information disclosure vulnerability. [get it…]

Jun 5, 2011 - Google - Chrome Browser: 11.0.696.77 issued to fix a security vulnerability. [get it…]

May 2011

May 31, 2011 - Apple - OS X 10.6 (Snow Leopard): fix to block security vulnerability. [get it…]

May 24, 2011 - Google - Chrome Browser: 11.0.696.71 issued to fix bugs and 4 security vulnerabilities. [get it…]

May 17, 2011 - Opera Software - Opera Browser Suite: 11.11 issued to fix bugs and security vulnerabilities. [get it…]

May 12, 2011 - Google - Chrome Browser: 11.0.696.68 issued to fix bugs and 2 security vulnerabilities. [get it…]

May 10, 2011 - Microsoft - Office XP, 2003, 2007; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Office for Mac 2004, 2008; Open XML File Format Converter for Mac: fix for remote code execution vulnerability. [get it…]

May 10, 2011 - Microsoft - Windows Server 2003, Server 2008: fix for remote code execution vulnerability. [get it…]

April 2011

Apr 28, 2011 - Mozilla Corporation - Firefox Browser 4.0.x: 4.0.1 issued to fix 3 security vulnerabilities. [get it…]

Apr 28, 2011 - Mozilla Corporation - Firefox Browser 3.6.x: 3.6.17 issued to fix 6 security vulnerabilities. [get it…]

Apr 28, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 2.0.14 issued to fix security vulnerabilities. [get it…]

Apr 28, 2011 - Mozilla Corporation - Thunderbird Emailer / Newsreader: 3.1.10 issued to fix bugs and security vulnerabilities. [get it…]

Apr 27, 2011 - Google - Chrome Browser: 11.0.696.57 issued to fix bugs and many security vulnerabilities. [get it…]

Apr 21, 2011 - Adobe - Acrobat 9.4.4; Acrobat Reader 9.4.4: fix for 2 security vulnerabilities. [get it…]

Apr 21, 2011 - Adobe - Acrobat 10.0.3; Acrobat Reader 10.0.3: fix for 2 security vulnerabilities. [get it…]

Apr 14, 2011 - Apple - OS X 10.6 (Snow Leopard): root certificate update. [get it…]

Apr 14, 2011 - Apple - Safari Browser: 5.0.5 issued to fix 2 vulnerabilities. [get it…]

Apr 14, 2011 - Google - Chrome Browser: 10.0.648.205 issued to fix bugs and 3 security vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for elevation of privilege vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: cumulative update of activeX kill Bits. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for information disclosure vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Visual C++ Redistributable Package 2005, 2008, 2010; Visual Studio .NET 2003, 2005, 2008, 2010: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Office XP, 2003, 2007; Office for Mac 2004, 2008, 2011; Office for Mac Open XML File Format Converter: fix for remote code execution vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Office XP, 2003, 2007, 2010; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Office for Mac 2004, 2008, 2011; Office for Mac Open XML File Format Converter; PowerPoint Viewer: fix for remote code execution vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Excel Viewer; Office XP, 2003, 2007, 2010; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats; Office for Mac 2004, 2008, 2011; Office for Mac Open XML File Format Converter: fix for remote code execution vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerability. [get it…]

Apr 12, 2011 - Microsoft - Windows XP, Server 2003, Vista, Server 2008, 7: fix for remote code execution vulnerabilities. [get it…]

Apr 12, 2011 - Microsoft - Internet Explorer 6, 7, 8: cumulative security update fixing 5 new vulnerabilities. [get it…]

March 2011

Mar 24, 2011 - Google - Chrome Browser: 10.0.648.204 issued to fix bugs and 6 security vulnerabilities. [get it…]

Mar 24, 2011 - Mozilla Corporation - SeaMonkey Browser Suite: 2.0.13 issued to fix a security vulnerability. [get it…]

For older news, visit the news archives.