Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

The Top 5 Most Overlooked Open Source Vulnerabilities for 2007

BugsAlert Home > The Top 5 Most Overlooked Open Source Vulnerabilities for 2007
 
 

LinuxSecurity.com: Vulnerabilities and advisories are a standard part of running your system. So for the Open Source realm, which ones deserve the most attention? Well, Palamida, a code testing company has done just that:

For year-end 2007, we have compiled the Top 5 Most Overlooked Open Source Vulnerabilities encountered during 2007. We came up with this list after reviewing over 300 million lines of code and spending literally thousands of hours of analysis across a wide range of industries - including technology, financial services and government, among others.

So what do we mean by "Most Overlooked"? Well first, we mean that these are known vulnerabilities with a high-severity, Common Vulnerability and Exposure, (CVE) ranking found within open source projects that appear in code audits we perform. Secondly, and perhaps even more importantly, these vulnerabilities were found throughout 2007 in some of the most frequently used open source projects that customers did not realize they had.




Original Source: http://www.linuxsecurity.com/content/view/132200?rdf

Learn more about The Top 5 Most Overlooked Open Source Vulnerabilities for 2007
 
Tags: top overlooked open source vulnerabilities 2007

Related Items

      Bugtraq: php-nuke 8.0 module sections artid blind sql inj vuln.

      CVE-2008-0436 (MegaBBS)

      DESlock+ Multiple Vulnerabilities

      OpenSSH Speed Tips and Tricks

      PolDoc Document Management System Directory Travseral Vulnerability

      FrSIRT - Fedora Security Update Fixes Ghostscript Buffer Overflow Vulnerability

      CVE-2008-2552 (Service Tag)

 

Pixel