Patches Released For Firefox and Thunderbird
Comments Off on Patches Released For Firefox and Thunderbird
The release of Firefox 7 is important because the new version features better memory management and is the first step in Mozilla’s long term plan to make the browser more resource friendly.
Nevertheless, users who upgrade to it will also benefit from improved security as this release fixes six critical and two moderate severity security vulnerabilities.
Four of the critical patches are shared with Thunderbird 7 and address a use-after-free condition with OGG headers, an exploitable crash in the YARR regular expression library, a code installation quirk involving the Enter key and multiple memory hazards.
A moderate severity patch that provides defence against multiple Location headers caused by CRLF injection attacks is also common to both products.
In addition to these patches Firefox 7 also contains fixes for two critical and one moderate severity vulnerabilities, with one of them resulting in a potentially exploitable WebGL crash.
It’s worth pointing out that Microsoft previously motivated its decision to not include support for WebGL in Internet Explorer by saying that the 3D graphics library opens a large attack surface.
So far several serious vulnerabilities have been identified and patched in WebGL, which partially supports Microsoft’s assessment, but the library’s supporters claim this is no different than with other technologies.
Firefox 7 also updates Websocket, a protocol disabled in the past because of security issues, to version 8, which is no longer vulnerable to known attacks.
Adobe Patches Security Holes in Flash
Comments Off on Adobe Patches Security Holes in Flash
Adobe has released a security update for Flash Player in order to address several critical vulnerabilities, including one that is being exploited in the wild.
The Flash Player 10.3.183.10 for Windows, Mac and Linux, and Flash Player 10.3.186.7 for Android, contain patches for six security flaws.
One of them is a cross-site scripting (XSS) weakness that can be exploited to execute rogue actions on behalf of web sites or webmail providers if victims click on maliciously-crafted links.
“There are reports that this issue is being exploited in the wild in active targeted attacks designed to trick the user into clicking on a malicious link delivered in an email message,” Adobe warns in its security advisory.
XSS vulnerabilities are the result of improper user input validation and allow attackers to execute rogue code in the context of the current web site. For example, they can be leveraged to extract session cookies or load rogue forms into legitimate pages, which makes for very credible phishing attacks.
Adobe credits Google for reporting this cross-site scripting vulnerability, which is identified as CVE-2011-2444. This means it might have been detected in attacks against Gmail users.
Two other patched vulnerabilities allow for arbitrary code execution and are located in the AVM stack. One of them can also lead to a denial of service condition. Two remote code execution logic errors and a Flash Player security control bypass have also been addressed.
Users should deploy the new update as soon as possible because browser plug-ins like Java, Adobe Reader or Flash Player are amongst the most attacked pieces of software one can have on a computer. However, unlike Adobe Reader X (10.0) which features sandboxing technology, Flash Player doesn’t have any anti-exploitation mechanism built-in.
Flash Player 11 Launched With 3D Gaming
Comments Off on Flash Player 11 Launched With 3D Gaming
Adobe Systems announced Flash Player 11 and Adobe Air 3 software Wednesday to assist developers in building more sophisticated applications with dozens of new features across smartphones and tablets as well as desktop computers.
The releases are Adobe’s biggest in two years, and will be available free of charge in early October, said Anup Murarka, Adobe’s director of product marketing. The related tools, Flash Builder and Flex, will support new features in Flash Player 11 and Adobe Air 3 by the end of the year.
The releases will enable delivery of 2D and 3D games over the Internet to various devices, Murarka said. Developers of enterprise applications will also find the 3D capabilities popular for data-centric apps. Enterprises, for example, will be able to build application dashboards to “visualize complex data sets” with 3D images, he said.
Developers will also be able to use the tools to more deeply integrate business software like Excel and Outlook in devices and to access hardware programming interfaces for functions such as Near-Field Communication being used more widely in smartphones, Murarka said.
The new versions will also help developers build more secure applications with the ability to leverage cryptographically secure random number generation, he said.
Nokia Had Horrible Quarter
July 27, 2011 by admin
Filed under Smartphones
Comments Off on Nokia Had Horrible Quarter
Nokia has just posted very disturbing quarterly results this morning. The European smartphone giant outlook appears to be getting worse and CEO Stephen Elop has acknowledged that things will not turn around overnight.
Elop is reporting that Nokia’s operating profit is down 44 percent since Q1 and sales of mobile devices are down 23 percent consecutively. While the overall sales of mobile phones and smartphones are down, along with average selling prices.
Elop labelled the results as “clearly disappointing” and went on to say that competitive pressures are continuing. He tried to paint a somewhat more positive outlook for the rest of the year, thanks to Nokia’s clear strategy and several major product launches.
Flaw in Intel’s 320 Series SSD Confirmed
July 22, 2011 by admin
Filed under Around The Net
Comments Off on Flaw in Intel’s 320 Series SSD Confirmed
There had been talk on the Internet in reference to the nasty bug discovered and reported on Intel’s support forums regarding the data loss on its recently released 320-series SSDs and today, Intel has finally and officially confirmed it.
The users have mentioned that under power failures, the drive reverts back to 8MB capacity and thus looses all the data stored on the drive. According to preliminary reports the drive tries to reconnect with the SATA port rather than to go for a proper shutdown.
Nokia Expects Windows Phone Before EOY
June 3, 2011 by admin
Filed under Smartphones
Comments Off on Nokia Expects Windows Phone Before EOY
Nokia has “increased confidence” that the first of its smartphone devices to run on the Windows Phone platform will ship by the fourth quarter, the company said on Tuesday.
Nokia’s CEO Stephen Elop is putting his full weight behind getting a Windows Phone-based product out for the important end-of-year holiday shopping season, in order to help turn around the company’s smartphone fortunes. The company’s teams are aligned around that goal, he said in a statement.
The company won’t reveal ship dates until closer to when the first phones arrive, but the pressure is on to deliver the devices this year, Elop said when the company announced its first quarter results.
Nokia will have several more opportunities to divulge more information shortly. On June 21, Elop will give a presentation at the Connection 2011 Conference, which is organized in conjunction with CommunicAsia 2011 in Singapore. He will give an update on the company’s partnership with Microsoft, and set the stage for a number of product and service launches, according to the program.
Intel Is Still The Market Leader
Reports now show that Intel shipped 44 percent more Microprocessors than Samsung and Intel’s overall shipments grew 25 percent year-over-year. Meanwhile Samsung’s first quarter microprocessor grew by 15 percent. The report also noted that Toshiba and TSMC came in a respectful 3rd and 4t with 10 and 18 percent of year over year growth respectively. Texas Instruments came in 5th barely edging out Renesas which appears to be closing the gap on TI.
Super mobile chipmaker Qualcomm was 10th and showed a 22 percent growth year-over-year; while AMD ranked 12th, with 2 percent growth. One would have thought that AMD would have been one of the top five manufacturers.
Unfortunately Nvidia and Sony ended up at the bottom with ended up at the bottom with six and 14 percent drop in sales, respectively.
Is Intel Facing The Heat?
Analysts at Goldman Sachs are saying that chip maker Intel may be in a pickle as microprocessor shipments slow and it faces stiff competition. That said, analysts have advised stockholders to sell Intel as they downgraded the stock.
James Covello and Simon Schafer of GS said that there will be a surplus in chips due to plant expansion. Meanwhile the rest of the gang on Wall Street is forecasting a six percent year-over-year rise in Intel’s sales, amid expanding gross margins, Goldman says otherwise and that sales will be flat due to excess capacity.
Furthermore, Intel is expected to face problems dealing with better chips from their main rival AMD: while tablets are cannibalising notebooks with ARM kicking its tail in the mobile space.
New Atom Architecture In The Making
Word on the street is that Intel is in the process of developing an entirely new Atom architecture based on its 3D transistor technology they announced last week. This new architecture should enable more power efficiency on the chip.
The new processor is being called Silvermont and the Atom will encompass a system-on-chip design, similar to Intel’s Z760 Atom or ARM’s processors. Silvermont is being designed on Intel’s 22nm process and harness the power of Intel’s 3D transistor technology that has yet to be tested.
Tablet Users Are Dropping Laptops
According to Neilsen people who have owned laptops and now use tablets as a PC device are ditching them like hotcakes. Under the study conducted around 77 percent of tablet owners are now using their device in the same capacity as they used their laptop computers. This strange because there are many applications or functions that a tablet is not able to process or handle.
One third of the tablet owners also admitted that they find themselves using their desktops even less since they acquired a tablet PC. Furthermore, thirty percent of those surveyed who own both a laptop and desktop who owned a laptop find themselves using their tablet more. A small percentage (2) of those Neilsen interviewed said they had stopped using their laptop computer altogether.