Stories by Lucian Constantin

Secunia sets six-month deadline for vulnerability disclosures

Vulnerability research firm Secunia <a href="http://secunia.com/blog/292/">announced</a> that, effective from the beginning of the year, software vendors will have a six-month deadline to fix vulnerabilities reported through its Vulnerability Coordination Reward Programme (SVCRP).

NSA releases a security-enhanced version of Android

The National Security Agency (NSA) has released SE Android, a security-enhanced version of Android, which provides and enforces stricter access-control policies than those found in the popular mobile operating system by default.

Hash collision DoS vulnerability fixed in PHP 5.3.9

The PHP development team <a href="http://www.php.net/archive/2012.php#id2012-01-11-1">has released</a> version 5.3.9 of the popular Web development platform in order to address a recently disclosed denial-of-service (DoS) vulnerability, as well as other security issues and bugs.

Two zero-day vulnerabilities found in Flash Player

Two newly discovered vulnerabilities in Adobe's Flash Player can be exploited to execute arbitrary code remotely, according to <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4694">advisories</a> from the U.S. Computer Emergency Readiness Team (US-CERT) and various security research companies.

[]