<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Startupware: Managing Startups &#187; Patches</title>
	<atom:link href="http://www.startupware.com/category/patches/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.startupware.com</link>
	<description>Autorunning Software &#38; Running a Software Business</description>
	<lastBuildDate>Thu, 05 Jan 2012 18:35:04 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Shockwave 11.5.8.612, Multiple Patches</title>
		<link>http://www.startupware.com/patches/shockwave-11-5-8-612/</link>
		<comments>http://www.startupware.com/patches/shockwave-11-5-8-612/#comments</comments>
		<pubDate>Wed, 25 Aug 2010 13:40:20 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=255</guid>
		<description><![CDATA[There&#8217;s a new version of Shockwave from Adobe. It&#8217;s now at version 11.5.8.612, updated to block multiple problems that allowed third-party code to run without the appropriate permissions. Update at http://get.adobe.com/shockwave/ More information at Homeland Security: http://www.us-cert.gov/current/index.html#adobe_releases_security_bulletin_for8]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s a new version of Shockwave from Adobe. It&#8217;s now at version 11.5.8.612, updated to block multiple problems that allowed third-party code to run without the appropriate permissions.</p>
<p>Update at <a href="http://get.adobe.com/shockwave/">http://get.adobe.com/shockwave/</a></p>
<p>More information at Homeland Security:<br />
<a href="http://www.us-cert.gov/current/index.html#adobe_releases_security_bulletin_for8">http://www.us-cert.gov/current/index.html#adobe_releases_security_bulletin_for8</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/shockwave-11-5-8-612/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Adobe Reader moves to 9.3.4, Off-schedule patch</title>
		<link>http://www.startupware.com/patches/adobe-9-3-4-patch/</link>
		<comments>http://www.startupware.com/patches/adobe-9-3-4-patch/#comments</comments>
		<pubDate>Fri, 20 Aug 2010 13:22:21 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=249</guid>
		<description><![CDATA[Adobe Reader has a new patch, moving it to a current release of 9.4.4. This is not on their announced schedule of matching the Microsoft second-Tuesday patch release calendar. This patch requires a system reboot. According to the Adobe release notes: These updates resolve an integer overflow vulnerability that could lead to code execution (CVE-2010-2862). [...]]]></description>
			<content:encoded><![CDATA[<p>Adobe Reader has a new patch, moving it to a current release of 9.4.4. This is not on their announced schedule of matching the Microsoft second-Tuesday patch release calendar. This patch requires a system reboot.</p>
<p>According to the Adobe release notes:</p>
<blockquote><p>These updates resolve an integer overflow vulnerability that could lead to code execution (CVE-2010-2862).</p>
<p>These updates further mitigate a social engineering attack that could lead to code execution (CVE-2010-1240).</p>
<p>These updates incorporate the Adobe Flash Player update as noted in Security Bulletin APSB10-16.</p></blockquote>
<p>Translation into non-technobabble: Without the patch, bad guys can run their programs on your computer, including malware installers.</p>
<p>In my opinion, all users should also turn off two features in Adobe Reader to reduce the possibility of third-party code running unapproved. In the Tools, Preferences menu, go to Javascript. Uncheck the top box. And in Trust Manager, uncheck the top box. The first option runs scripts, and the second runs embedded documents, including possible macro code. No one uses these features except malware writers.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/adobe-9-3-4-patch/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple QuickTime 7.6.7 Security Update</title>
		<link>http://www.startupware.com/patches/apple-quicktime-7-6-7-security-update/</link>
		<comments>http://www.startupware.com/patches/apple-quicktime-7-6-7-security-update/#comments</comments>
		<pubDate>Fri, 13 Aug 2010 16:32:05 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=245</guid>
		<description><![CDATA[Apple has updated QuickTime to version 7.6.7. It&#8217;s a security update, blocking attackers from using an error code to overflow a buffer, and so run code that would normally not be allowed while online, and to block a possible DOS (denial of service) condition. More at Homeland Security, here.]]></description>
			<content:encoded><![CDATA[<p>Apple has updated QuickTime to version 7.6.7.<br />
It&#8217;s a security update, blocking attackers from using an error code to overflow a buffer, and so run code that would normally not be allowed while online, and to block a possible DOS (denial of service) condition.</p>
<p>More at Homeland Security, <a href="http://www.us-cert.gov/current/index.html#apple_releases_quicktime_7_61">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/apple-quicktime-7-6-7-security-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Adobe Flash Player now at 10.1.82.76</title>
		<link>http://www.startupware.com/patches/flash-10-1-82-76/</link>
		<comments>http://www.startupware.com/patches/flash-10-1-82-76/#comments</comments>
		<pubDate>Wed, 11 Aug 2010 13:55:42 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=238</guid>
		<description><![CDATA[Adobe has released an update to Flash Player. It&#8217;s a security fix, preventing either execution of arbitrary code (malware installs are possible), or a denial of service attack. More at US Homeland Security, here.]]></description>
			<content:encoded><![CDATA[<p>Adobe has released an update to Flash Player. It&#8217;s a security fix, preventing either execution of arbitrary code (malware installs are possible), or a denial of service attack.</p>
<p>More at US Homeland Security, <a href="http://www.us-cert.gov/current/index.html#adobe_releases_security_update_for1">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/flash-10-1-82-76/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update of Apple iTunes to 9.2.1</title>
		<link>http://www.startupware.com/patches/update-of-apple-itunes-to-9-2-1/</link>
		<comments>http://www.startupware.com/patches/update-of-apple-itunes-to-9-2-1/#comments</comments>
		<pubDate>Tue, 20 Jul 2010 13:25:31 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=234</guid>
		<description><![CDATA[Apple has released an update for iTunes. It&#8217;s a security update to prevent a denial-of-service attack based on podcast links. More information is at US-Cert, the US Computer Emergency Readiness Team. The list of the most-commonly installed web file viewers and their current patch levels and links to version tests and installers has been updated, [...]]]></description>
			<content:encoded><![CDATA[<p>Apple has released an update for iTunes. It&#8217;s a security update to prevent a denial-of-service attack based on podcast links. More information is at <a href="http://www.us-cert.gov/current/index.html#apple_releases_itunes_9_21">US-Cert</a>, the US Computer Emergency Readiness Team.</p>
<p>The list of the most-commonly installed web file viewers and their current patch levels and links to version tests and installers has been updated, it’s here: <a href="http://www.startupware.com/patches">http://www.startupware.com/patches<br />
</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/update-of-apple-itunes-to-9-2-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Second Tuesday Update: Java</title>
		<link>http://www.startupware.com/patches/second-tuesday-update-java/</link>
		<comments>http://www.startupware.com/patches/second-tuesday-update-java/#comments</comments>
		<pubDate>Thu, 15 Jul 2010 03:56:23 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=230</guid>
		<description><![CDATA[Microsoft has the usual set of patches for the July 13th, Second Tuesday patch set&#8211;I see three for Windows 7, and three for Office 2007&#8211;be sure to get the &#8216;optional&#8217; updates to the help files, because this month&#8217;s patches involve fixes to the help format that prevent remote code execution. Other companies are using the [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has the usual set of patches for the July 13th, Second Tuesday patch set&#8211;I see three for Windows 7, and three for Office 2007&#8211;be sure to get the &#8216;optional&#8217; updates to the help files, because this month&#8217;s patches involve fixes to the help format that prevent remote code execution.</p>
<p>Other companies are using the Second Tuesday release date as well. This time Sun has an update for Java; your installations of Java should be 6, release 21.</p>
<p>The list of the most-commonly installed web file viewers and their current patch levels and links to version tests and installers has been updated, it’s here: <a href="http://www.startupware.com/patches">http://www.startupware.com/patches<br />
</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/second-tuesday-update-java/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Adobe Reader updated to 9.3.3</title>
		<link>http://www.startupware.com/patches/adobe-reader-9-3-3/</link>
		<comments>http://www.startupware.com/patches/adobe-reader-9-3-3/#comments</comments>
		<pubDate>Tue, 29 Jun 2010 21:11:54 +0000</pubDate>
		<dc:creator>FileTiger</dc:creator>
				<category><![CDATA[Patches]]></category>

		<guid isPermaLink="false">http://www.startupware.com/?p=222</guid>
		<description><![CDATA[Adobe has updated Adobe Acrobat and Adobe Reader to version 9.3.3. The patch is available from the Help menu, under &#8216;Check for Updates&#8217;, and it&#8217;s an important security patch, correcting security holes currently being exploited by malware. The patch alone is NOT adequate. ALSO, go to Edit, Preferences, and UNCHECK these two items: In JavaScript, [...]]]></description>
			<content:encoded><![CDATA[<p>Adobe has updated Adobe Acrobat and Adobe Reader to version 9.3.3. The patch is available from the Help menu, under &#8216;Check for Updates&#8217;, and it&#8217;s an important security patch, correcting security holes currently being exploited by malware.</p>
<p>The patch alone is NOT adequate. ALSO, go to Edit, Preferences, and UNCHECK  these two items:<br />
In JavaScript, the top item &#8216;Enable Acrobat JavaScript&#8217; should be unchecked.<br />
In Trust Manager, the top item, &#8216;Allow opening of non-PDF file attachments with external applications&#8217; should be unchecked.</p>
<p>The list of the most-commonly installed web file viewers and their current patch levels and links to version tests and installers has been updated, it&#8217;s here: <a href="http://www.startupware.com/patches">http://www.startupware.com/patches</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.startupware.com/patches/adobe-reader-9-3-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

