Original URL: http://www.channelregister.co.uk/2006/08/02/mcafee_bug/
McAfee has fixed a flaw involving older versions of its consumer security software that creates a means for hackers to compromise vulnerable systems.
The bug is the latest in a string of flaws affecting security software packages that have come to light over recent months.
In this case, the unspecified security bug relates to McAfee SecurityCenter, creating a means to execute hostile code providing users can be tricked into visiting a malicious website.
The vulnerability affects versions 4.3 through 6.0.22 of SecurityCenter, a component of a wide range of McAfee security products including: McAfee Internet Security Suite 2006, McAfee Wireless Home Network Security, McAfee Personal Firewall Plus, McAfee VirusScan, McAfee Privacy Service, McAfee SpamKiller and McAfee AntiSpyware.
Users are advised to update to McAfee SecurityCenter, as explained in an advisory by McAfee here (http://ts.mcafeehelp.com/faq3.asp?docid=407052). Most, but not all, McAfee users will automatically receive the update.
The bug was discovered by security researchers at eEye Digital Security, which has published an advisory here (http://www.eeye.com/html/research/upcoming/20060719.html). ®
McAfee upgrade plays nasty with Lotus Notes (23 January 2007)
http://www.channelregister.co.uk/2007/01/23/mcafee_lotus_notes/
McAfee opens data-theft snooping service (16 October 2006)
http://www.channelregister.co.uk/2006/10/16/mcafee_buys_onigma/
Kaspersky in heap-based buffer overflow vuln (4 October 2005)
http://www.channelregister.co.uk/2005/10/04/kaspersky_glitch/
Sophos bug highlights wider anti-virus flaws (29 July 2005)
http://www.theregister.co.uk/2005/07/29/sophos_buffer_overflow_bug/
Symantec false alert floors Macs (10 May 2005)
http://www.channelregister.co.uk/2005/05/10/symantec_mac_false_alarm/
PC-cillin killed my PC (25 April 2005)
http://www.channelregister.co.uk/2005/04/25/pc-cillin_duff_update/
Anti-virus vulnerabilities strike again (18 March 2005)
http://www.channelregister.co.uk/2005/03/18/mcafee_vuln/
BitDefender bug bites GFI (2 March 2005)
http://www.theregister.co.uk/2005/03/02/gfi_beserker/
McAfee AV ate my application (7 September 2004)
http://www.theregister.co.uk/2004/09/07/mcafee_false_alarm/
© Copyright 2008