Several vulnerabilities have been discovered in OpenJDK, an
implementation of the Oracle Java platform, resulting in breakouts of
the Java sandbox, information disclosure, denial of service and insecure
cryptography.
Monthly Archives: February 2016
Vuln: Oracle Java SE CVE-2015-4805 Remote Security Vulnerability
Oracle Java SE CVE-2015-4805 Remote Security Vulnerability
Vuln: Oracle Java SE CVE-2015-4806 Remote Security Vulnerability
Oracle Java SE CVE-2015-4806 Remote Security Vulnerability
Vuln: Oracle Java SE CVE-2015-4902 Remote Security Vulnerability
Oracle Java SE CVE-2015-4902 Remote Security Vulnerability
AVG Named One of 2016’s Coolest Cloud Security Vendors
It has been a cold month for all the right reasons this January as AVG has just been named one of CRN’s Coolest Cloud Security Vendors for 2016. This is the second consecutive time AVG has made the list, and it’s validation of our hard work over the last twelve months. We’ve been busy and – more importantly – focused on providing even more value for our AVG Business partners and their SMB clients in 2016.
In CRN’s recent recognition, the IT channel publication noted our cloud security and remote monitoring and management (RMM) capabilities for businesses. We continue to see AVG partners transition to solutions such as AVG CloudCare and AVG Managed Workplace as security becomes a higher priority for small business owners and their IT staff. When you couple this with our advanced Business Edition security products, it’s easy to see the value in our AVG Business solutions.
Earning the recognition as a ‘cool cloud security vendor’ also reflects our commitment to ensuring cloud solutions like AVG CloudCare are easy to implement and manage, simplifying the experience for partners and their SMB end-users.
AVG CloudCare is a single cloud platform that enables the real-time management of a full suite of cloud-based security services including antivirus, online backup (OLB), and a number of other key features.
If you’re not sufficiently impressed by our ‘cool’ credentials already, here are a few more top reasons why you should consider investigating AVG CloudCare for yourself:
- Ease of Use – AVG CloudCare’s online dashboard is well designed and easy to use for managing desktops, laptops and servers all at a glance.
- Remote Deployment – As long as one device is on the network, AVG CloudCare can be deployed to any computer attached to the network from the web console.
- Remote Updates and Scans – AVG CloudCare administrators can force definition updates and scans remotely.
- Dashboards and Reporting – AVG CloudCare administrators can view all managed devices through an online dashboard showing their status.
- Content Filtering – As an add-on, content filtering can protect your client’s business from malicious websites and increase productivity by disallowing certain groups of sites.
This recognition is also a true testament of the continued support from our partner and SMB community. As we head into 2016, we remain committed to helping solve today’s business security challenges and helping businesses be productive and successful.
Thank you for your support!
CVE-2015-8265
Huawei E5186 4G LTE router with software before V200R001B310D01SP00C00 allows DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.
CVE-2015-8781
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds write) via an invalid number of samples per pixel in a LogL compressed TIFF image, a different vulnerability than CVE-2015-8782.
CVE-2015-8782
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds writes) via a crafted TIFF image, a different vulnerability than CVE-2015-8781.
CVE-2016-2049
examples/consumer/common.php in JanRain PHP OpenID library (aka php-openid) improperly checks the openid.realm parameter against the SERVER_NAME element in the SERVER superglobal array, which might allow remote attackers to hijack the authentication of arbitrary users via vectors involving a crafted HTTP Host header.
CVE-2015-8783
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds reads) via a crafted TIFF image.