[ MDVSA-2014:195 ] libvirt

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 _______________________________________________________________________

 Mandriva Linux Security Advisory                         MDVSA-2014:195
 http://www.mandriva.com/en/support/security/
 _______________________________________________________________________

 Package : libvirt
 Date    : October 3, 2014
 Affected: Business Server 1.0
 _______________________________________________________________________

 Problem Description:

 Multiple vulnerabilities has been discovered and corrected in libvirt:
 
 An out-of-bounds read flaw was found in the way libvirt's
 qemuDomainGetBlockIoTune() function looked up the disk index in
 a non-persistent (live) disk configuration while a persistent disk
 configuration was being indexed. A remote attacker able to establish a
 read-only connection to libvirtd could use this flaw to crash libvirtd
 or, potentially, leak memory from the libvirtd process (CVE-2014-3633).
 
 A denial of service flaw was found in the wa

AVG CloudCare scoops award in independent tests

AVG CloudCare’s AntiVirus 2014 component has just received an award following its first ever participation in one of the industry’s top security comparison tests.  The latest Virus Bulletin  gave us a score of 91.2 out of a possible 100 in both Reactive and Proactive tests.

In an age where security breaches are common and a company trades more than ever on its reputation, small businesses simply cannot afford to take any chances when it comes to protecting their confidential or customer data.

In fact a recent eMarketer study shows that undetected malware and cloud-based security are still among the top security concerns for small businesses.

SMB Threats
That’s why I’m delighted that the Virus Bulletin test singled out AVG CloudCare for its scanning and detection performance. It is a strong indicator that we design our product wholly with users in mind and are addressing their very real concerns.

 

Here’s what Virus Bulletin had to say:

“Scanning was very fast indeed, even in the initial runs, and overheads were pretty light, barely detectable once files had been checked for the first time. Our set of activities ran through in good time, and resource use was low. Detection was very strong indeed with excellent scores throughout our sets, and with no issues to report in the WildList or clean sets, a VB100 award is well deserved, adding another good result to that strong score.”

 

Our customers are echoing this sentiment:

Thomas Keats of Rainbow Computers, a small business and AVG IT partner told us   “I love so much about AVG CloudCare, it’s increasing the bottom line, increasing interaction with the customer on more than one level, keeping me and my shop more in their mind each step of the way.”

If you are a small business looking for a way to stay ahead of the security curve why not ask a local IT contractor about AVG CloudCare? Your company’s security would be one less thing to worry about!

Learn more about AVG CloudCare at: www.avg.com/cloudcare

Learn more about the Virus Bulletin 100 test at: https://www.virusbtn.com/virusbulletin/archive/2014/06/vb201406-comparative

[ MDVSA-2014:194 ] phpmyadmin

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 _______________________________________________________________________

 Mandriva Linux Security Advisory                         MDVSA-2014:194
 http://www.mandriva.com/en/support/security/
 _______________________________________________________________________

 Package : phpmyadmin
 Date    : October 3, 2014
 Affected: Business Server 1.0
 _______________________________________________________________________

 Problem Description:

 A vulnerability has been discovered and corrected in phpmyadmin:
 
 With a crafted ENUM value it is possible to trigger an XSS in table
 search and table structure pages (CVE-2014-7217).
 
 This upgrade provides the latest phpmyadmin version (4.2.9.1) to
 address this vulnerability.
 _______________________________________________________________________

 References:

 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7217
 http://www.phpmyadmin.net/home_page/security/PMASA-2014-11.php
 _________________________________

Google faced with $100m legal action over naked celebrity photos

Google is facing a threat of expensive legal action over the recent leaked naked celebrity photographs, according to IT Pro. The basis for the legal threat seems to be built on the idea that the search giant didn’t do enough to prevent people seeing the photographs after the initial leak.

The post Google faced with $100m legal action over naked celebrity photos appeared first on We Live Security.

Software and Security Information