Archive for April, 2008

Apr 30 2008

Profile Image of MuZumbu
MuZumbu

PC Upgrade : Memory Deal

Filed under Web Ramblings

What do you do when your computer is starting to run slowly? One way is to get a new one. But what if you bought it a few months ago ? The only option available is an upgrade. And since a processor might still be powerful enough for what you need, a memory upgrade could bring you that boost of performance that you need.

These days every application available are used to taking as much ram memory available. So, if you need 4GB Memory Module for your applications you might consider MemoryDeal.NET. Memory Deal memory sells the latest technology from Samsung, Hynix, Qimonda, Micron, Elpida and Nanya, using genuine memory modules.

If you’re looking for a 2gb Memory Upgrade or even a PC3200 DDR400 SDRAM Upgrade , you will find out that they have what you need.

Right of the front page you will see a complete list of that days offers, organized by memory type ( DDR2 / DDR / SDRAM  ), capacity , specifications, part number, manufacturer and of course price. It’s very well structured so you can find the right memory in a minute.

And if that’s not enough for you, they have a news section where you can read all about memory, memory manufacturers and other news in the business.

No responses yet

Apr 23 2008

Profile Image of MuZumbu
MuZumbu

Highly Critical Vulnerability in ICQ Personal Status Processing

Filed under Uncategorized

Secunia Advisory: SA29821
Release Date: 2008-04-21
Critical:
Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch
Software: ICQ 6.x
Description:
Leon Juranic has reported a vulnerability in ICQ, which can be exploited by malicious people to compromise another user’s system.

The vulnerability is caused due to a boundary error when processing “Personal Statuses” set via the “Personal Status Manager” menu. This can be exploited to cause a heap-based buffer overflow by creating a specially crafted personal status and e.g. sending a message to another user.

Successful exploitation allows execution of arbitrary code.

The vulnerability is reported in version 6 build 6043. Other versions may also be affected.

Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, scan using the Network Software Inspector.

Solution:
The vendor has reportedly issued a fix via automatic updates.

Provided and/or discovered by:
Leon Juranic, INFIGO IS

No responses yet

Apr 23 2008

Profile Image of MuZumbu
MuZumbu

Highly critical Vulnerability in Mozilla Firefox Javascript Garbage

Filed under Secunia

Secunia Advisory: SA29787
Release Date: 2008-04-17
Last Update: 2008-04-21
Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch
Software: Mozilla Firefox 2.0.x
CVE reference: CVE-2008-1380 (Secunia mirror)
Description:
A vulnerability has been reported in Mozilla Firefox, which can potentially be exploited by malicious people to compromise a user’s system.

The vulnerability is caused due to an error in the Javascript Garbage Collector and can be exploited to cause a memory corruption via specially crafted Javascript code.

Successful exploitation may allow execution of arbitrary code.

The vulnerability is reported in version 2.0.0.13. Prior versions may also be affected.

Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, using the Network Software Inspector.

Solution:
Update to version 2.0.0.14.
http://www.mozilla.com/en-US/firefox/

Provided and/or discovered by:
Reported by the vendor.

No responses yet

Apr 21 2008

Profile Image of MuZumbu
MuZumbu

Get your irritating free mosquito ringtone

Filed under Web Ramblings

I really can’t understand the people that are using this kind of Mosquito Ringtones on their phone. Using a known condition called Presbycusis that manifests itself by not being able to hear higher frequency sounds as you get older, these ringtones are getting more and more exposure. For example, at the age of 18 you will be able to hear sounds of 20-22 khz, but at the age of 30 you will only hear up to 16khz.

This new Teen Buzz has developed pretty fast and now every teenager has at least one type of this ringtone on their phone. They are very happy about them because they can use their phone’s in places where they shouldn’t have. Like schools. Because of their youth they take advantage of older teachers and text message without being noticed when they receive a new sms. I personally dislike the ideea since I am getting older and these tones are very troublesome.

Even if I don’t like them I am going to recommend a  website that offers this kind of tone for free. It’s called Free Mosquito Ringtones and it even has mosquito iphone ringtones. It’s a nice website and a few days ago announced that their ringtone has been downloaded for more that 5 million times. I have to say good for them since they try to give this product for free in mp3, ogg vorbis, and wav formats and supporting their site only from advertising. That is very nice indeed.

The site is created using the popular blog platform : Wordpress and that makes it really easy  to navigate through. Besides the ringtone download page it also has a faq page filled with informations and a how-to page that explains how you can transfer their ringtone using built-in internet access into the phone, a Bluetooth or InfraRed connection or the old fashion data cable. And for those haveing iPhone’s they have a dedicated page with instructions on how to get it and use it.

One response so far

Apr 07 2008

Profile Image of MuZumbu
MuZumbu

Technical School

Filed under Web Ramblings

it.gif

An ever growing need for qualified technical personnel has lead to the appearance of lots of certifications and even more tech schools. A technical school can exist as a real school or as an online institute. Most of the certifications available require the student to take part in classes but because we live in the internet era now you can study online , at home. And when you feel you have grasped the knowledge you can take the final exam and get your diploma.

There are several online companies that offer it training for the most important or known certifications, like CISCO CCNA, Red Hat Certified Engineer, CompTIA Linux+, Microsoft MCSA or MCSE.

No responses yet

Apr 02 2008

Profile Image of MuZumbu
MuZumbu

Moderately critical vulnerability in GnuPG

Filed under Secunia

Secunia Advisory: SA29568
Release Date: 2008-04-01
Critical:
Moderately critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch
Software: GnuPG / gpg 1.4.x
GnuPG / gpg 2.x
CVE reference: CVE-2008-1530 (Secunia mirror)
Description:
A vulnerability has been reported in GnuPG, which can potentially be exploited to compromise a vulnerable system.The vulnerability is caused due to an error when importing keys with duplicated IDs. This can be exploited to cause a memory corruption when importing keys via –refresh-keys or –import.

Successful exploitation potentially allows execution of arbitrary code, but has not been proven yet.

The vulnerability is reported in version 1.4.8 and 2.0.8. Prior versions may also be affected.

Solution:
Update to version 1.4.9 or 2.0.9.
ftp://ftp.gnupg.org/gcrypt/gnupg

Provided and/or discovered by:
Andrea Barisani, oCERT

No responses yet

"