Site Archives Patch

SonicWALL SSL-VPN 200 Patch Released

Posted on June 2nd, 2009

GSA Reference Number: AD090602-01

Simply Put: SonicWALL has released a patch for an internal memory disclosure vulnerability in its SSL-VPN products.  Note, this is not a vulnerability with its firewall or unified threat management products, just the stand-alone SSL VPN devices.  The vulnerability allows an unauthenticated attacker to manipulate the portal login page to read parts of internal memory.  This vulnerability could lead to information disclosure.

Microsoft Releases Critical Out-of-Band Patch

Posted on October 23rd, 2008

GSA Reference Number: AD081023-01

Simply Put: Normally Microsoft only releases patches on the second Tuesday of each month.  But Microsoft has just released a bulletin notifying customers they will release a patch to address a new remote code execution exploit.  The patch was posted today at 1 pm and addresses a bug in the Server Service.