<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Software on Omid Farhang</title><link>https://omid.dev/tags/software/</link><description>Recent content in Software on Omid Farhang</description><image><title>Omid Farhang</title><url>https://omid.dev/images/bio-photo-150x150.jpg</url><link>https://omid.dev/images/bio-photo-150x150.jpg</link></image><generator>Hugo -- 0.165.0</generator><language>en-US</language><copyright>2026 Omid Farhang | All rights reserved.</copyright><lastBuildDate>Thu, 29 Nov 2012 20:48:00 +0000</lastBuildDate><atom:link href="https://omid.dev/tags/software/index.xml" rel="self" type="application/rss+xml"/><atom:link href="https://pubsubhubbub.appspot.com/" rel="hub"/><item><title>Google updates all Chrome editions</title><link>https://omid.dev/2012/11/29/google-updates-all-chrome-editions/</link><pubDate>Thu, 29 Nov 2012 20:48:00 +0000</pubDate><guid>https://omid.dev/2012/11/29/google-updates-all-chrome-editions/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-jf_RJKSlvmw/ULfDIl4eitI/AAAAAAAAHoY/ok_C5icwWyQ/s1600-h/new-chrome-logo%25255B2%25255D.png" alt="new-chrome-logo" /&gt;
&lt;/p&gt;
&lt;p&gt;h-online: Google has updated the Stable, Beta and Developer Channels of the desktop version of its Chrome browser with a number of bug fixes and improvements. The Stable Channel update closes seven security vulnerabilities, three of them rated High, and includes bug fixes. New stable Chrome versions for iOS and Android have also been released and include minor improvements. The iOS version of the browser now supports Apple&amp;rsquo;s Passbook application.&lt;/p&gt;</description></item><item><title>Mozilla closes numerous critical holes in Firefox 16 [Update]</title><link>https://omid.dev/2012/10/12/mozilla-closes-numerous-critical-holes-in-firefox-16-update/</link><pubDate>Fri, 12 Oct 2012 11:35:00 +0000</pubDate><guid>https://omid.dev/2012/10/12/mozilla-closes-numerous-critical-holes-in-firefox-16-update/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh5.ggpht.com/-dAKceUABy4A/UHf5VBetdeI/AAAAAAAAHfQ/cgWxWK8mgNQ/s1600-h/moztrio%25255B2%25255D.png" alt="moztrio" /&gt;
&lt;/p&gt;
&lt;p&gt;The h-online: Following the recent Firefox 16 release, Mozilla has now detailed all of the security fixes in the new version of its open source web browser as well as in the Thunderbird news and email client. Version 2.13 of the SeaMonkey “all-in-one internet application suite” has also received fixes. In addition to adding new features, version 16.0 of Firefox closes a total of 14 security holes, 11 of which are rated as “Critical” by the project.&lt;/p&gt;</description></item><item><title>Symantec releases Norton 2013 security suites</title><link>https://omid.dev/2012/09/07/symantec-releases-norton-2013-security-suites/</link><pubDate>Fri, 07 Sep 2012 15:29:00 +0000</pubDate><guid>https://omid.dev/2012/09/07/symantec-releases-norton-2013-security-suites/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh5.ggpht.com/-_Ue0jCvK8cQ/UEoLsNDKH8I/AAAAAAAAHWQ/OlK97LYx0hc/s1600-h/Norton-Internet-Security-2013-600x450%25255B3%25255D.jpg" alt="Norton-Internet-Security-2013-600x450" /&gt;
&lt;/p&gt;
&lt;p&gt;BetaNews: Symantec has released brand new versions of its Norton security packages for Windows, Norton Anti-Virus 2013, Norton Internet Security 2013 and Norton 360 2013. It’s the first time all three packages have been updated simultaneously, while the branding has also been amended to remove all references to a date, simply naming each Norton Anti-Virus, Norton Internet Security and Norton 360, respectively.&lt;/p&gt;
&lt;p&gt;The 2013 versions come with what Symantec describes as “five layers of patented protection”, which include stronger social networking and anti-scam protection. There’s also full, certified support for Windows 8 and the promise of better performance on multi-core CPUs.&lt;/p&gt;</description></item><item><title>Oracle rushes out patch for critical 0-day Java exploit</title><link>https://omid.dev/2012/08/31/oracle-rushes-out-patch-for-critical-0-day-java-exploit/</link><pubDate>Fri, 31 Aug 2012 14:17:00 +0000</pubDate><guid>https://omid.dev/2012/08/31/oracle-rushes-out-patch-for-critical-0-day-java-exploit/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh6.ggpht.com/-wPwb8KpcqAo/UEDAS4TObCI/AAAAAAAAHR4/xIkTWQH65oM/s1600-h/Java%25255B3%25255D.jpg" alt="Java" /&gt;
&lt;/p&gt;
&lt;p&gt;TheRegister: In an uncommon break with its thrice-annual security update schedule, Oracle has released a patch for three Java 7 security flaws that have recently been targeted by web-based exploits.&lt;/p&gt;
&lt;p&gt;“Due to the high severity of these vulnerabilities, Oracle recommends that customers apply this Security Alert as soon as possible,” Eric Maurice, the company&amp;rsquo;s director of software security assurance, said in a &lt;a href="https://blogs.oracle.com/security/entry/security_alert_for_cve_20121"&gt;blog post&lt;/a&gt; published on Thursday.&lt;/p&gt;
&lt;p&gt;Maurice said that the vulnerabilities patched only affect Java running in browsers, and not standalone desktop Java applications or Java running on servers. According to Oracle&amp;rsquo;s &lt;a href="http://www.oracle.com/technetwork/topics/security/alert-cve-2012-4681-1835715.html"&gt;official advisory&lt;/a&gt; on the flaws:&lt;/p&gt;</description></item><item><title>Download Firefox 15 and Thunderbird 15!</title><link>https://omid.dev/2012/08/28/download-firefox-15-and-thunderbird-15/</link><pubDate>Tue, 28 Aug 2012 16:55:00 +0000</pubDate><guid>https://omid.dev/2012/08/28/download-firefox-15-and-thunderbird-15/</guid><description>&lt;p&gt;Cross-copied from &lt;a href="http://betanews.com/2012/08/28/download-firefox-15-and-thunderbird-15-now/"&gt;BetaNews&lt;/a&gt;:&lt;/p&gt;
&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-ZoPErUioMCk/UDzwx4iIvGI/AAAAAAAAHQU/GW5FEZuXKq4/s1600-h/Firefox-15%25255B5%25255D.jpg" alt="Firefox-15" /&gt;
&lt;/p&gt;
&lt;p&gt;Mozilla has quietly placed major new versions of its open-source, cross-platform web browser and email client onto its download servers ahead of an official release.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.downloadcrew.com/article/24333-firefox"&gt;Firefox 15 FINAL&lt;/a&gt; benefits largely from behind-the-scenes performance tweaks, while &lt;a href="http://www.downloadcrew.com/article/24287-mozilla_thunderbird"&gt;Thunderbird 15 FINAL&lt;/a&gt; introduces a few new features, including a new curvy user interface.&lt;/p&gt;
&lt;p&gt;Firefox 15 FINAL’s most notable changes are performance-based. There’s faster startup on Windows PCs, plus incremental garbage collection and better management of plugins to prevent memory leaks. Other performance improvements surround WebGL enhancements.&lt;/p&gt;</description></item><item><title>IE 9.0.9 Available via Windows Update</title><link>https://omid.dev/2012/08/16/ie-9-0-9-available-via-windows-update/</link><pubDate>Thu, 16 Aug 2012 10:43:00 +0000</pubDate><guid>https://omid.dev/2012/08/16/ie-9-0-9-available-via-windows-update/</guid><description>&lt;p&gt;MSDN:&lt;/p&gt;
&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-qAYbwQpCauA/UCzH0B4SFII/AAAAAAAAG-E/k0aqdkRp0xk/s1600-h/internetexplorer9logo%25255B6%25255D.png" alt="internetexplorer9logo" /&gt;
&lt;/p&gt;
&lt;p&gt;The &lt;a href="http://support.microsoft.com/kb/2722913"&gt;&lt;strong&gt;August 2012 Cumulative Security Update for Internet Explorer&lt;/strong&gt;&lt;/a&gt; is now available via &lt;a href="http://go.microsoft.com/fwlink/?LinkID=40747"&gt;&lt;strong&gt;Windows Update&lt;/strong&gt;&lt;/a&gt;. This security update resolves four privately reported vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the current user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights This security update is rated Critical for Internet Explorer 6, Internet Explorer 7, Internet Explorer 8, and Internet Explorer 9 on Windows clients and Moderate for Internet Explorer 6, Internet Explorer 7, Internet Explorer 8, and Internet Explorer 9 on Windows servers For more information, see the &lt;a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-052"&gt;full bulletin&lt;/a&gt;.&lt;/p&gt;</description></item><item><title>Adobe Flash Player 11.3.300.270 for Windows released to address a crash</title><link>https://omid.dev/2012/08/03/adobe-flash-player-11-3-300-270-for-windows-released-to-address-a-crash/</link><pubDate>Fri, 03 Aug 2012 09:13:00 +0000</pubDate><guid>https://omid.dev/2012/08/03/adobe-flash-player-11-3-300-270-for-windows-released-to-address-a-crash/</guid><description>&lt;p&gt;Adobe wrote:&lt;/p&gt;
&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-_CrJFp4sO6k/UBuPL-gtLWI/AAAAAAAAG2k/LNOJO4JslDk/s1600-h/Adobe_Flash_120%25255B2%25255D.png" alt="Adobe_Flash_120" /&gt;
&lt;/p&gt;
&lt;p&gt;Today, Flash Player 11.3.300.270 for Windows was released to address a crash that was occurring in the Adobe Flash Player Update Service (FlashPlayerUpdateService.exe).  There are no other fixes or changes provided with this build.  This release is available for Windows only, and affects the Active X and Plug-in installers, uninstaller, and msi&amp;rsquo;s (available on the distribution page.)  No other platforms are affected.&lt;/p&gt;
&lt;p&gt;Please be aware that this release is not available from the Product Download Center (&lt;a href="http://get.adobe.com/flashplayer"&gt;http://get.adobe.com/flashplayer&lt;/a&gt;) which will continue to provide 11.3.300.268.  We realize that this might cause confusion for some users.  Due to the severity of this issue, we decided to make this build available immediately to help customers affected by this bug.  Due to logistical issues and time constraints, we were unable to update the release on the Product Download Center.  The next release of Flash Player will correct this disparity.  Please note that unless you have been affected by the FlashPlayerUpdateService.exe crash, both 11.3.300.270 and 11.3.300.268 will be functionally identical.&lt;/p&gt;</description></item><item><title>Chrome 21 arrives with new API for video and audio communication</title><link>https://omid.dev/2012/08/02/chrome-21-arrives-with-new-api-for-video-and-audio-communication/</link><pubDate>Thu, 02 Aug 2012 19:53:00 +0000</pubDate><guid>https://omid.dev/2012/08/02/chrome-21-arrives-with-new-api-for-video-and-audio-communication/</guid><description>&lt;p&gt;&lt;a href="http://lh5.ggpht.com/-2E06ei7wjEo/UBrTXKPuvtI/AAAAAAAAGxw/qomp-xpQ_pM/s1600-h/new-chrome-logo%25255B2%25255D.png"&gt;&lt;img loading="lazy" src="http://lh6.ggpht.com/-2EmMc9Ve3t4/UBrTZNd7lgI/AAAAAAAAGx4/Vu4J4XG059g/new-chrome-logo_thumb.png?imgmax=800" alt="new-chrome-logo" title="new-chrome-logo" /&gt;
&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;h-online: With the &lt;a href="http://chrome.blogspot.com/2012/07/new-senses-for-web.html"&gt;release of Chrome 21&lt;/a&gt;, web applications can now directly access the local system&amp;rsquo;s built-in camera and microphone. Instead of requiring a special plugin, the major stable update to the WebKit-based web browser includes a new HTML5 &lt;code&gt;[getUserMedia](http://www.html5rocks.com/en/tutorials/getusermedia/intro/)&lt;/code&gt; API – currently a &lt;a href="http://dev.w3.org/2011/webrtc/editor/getusermedia.html"&gt;W3C Editor&amp;rsquo;s Draft&lt;/a&gt; – to provide web apps with access to the camera and microphone. For security purposes, users will be prompted to grant apps permission to access the hardware.&lt;/p&gt;</description></item><item><title>Urgent security update for TeamViewer</title><link>https://omid.dev/2012/07/21/urgent-security-update-for-teamviewer/</link><pubDate>Sat, 21 Jul 2012 04:53:00 +0000</pubDate><guid>https://omid.dev/2012/07/21/urgent-security-update-for-teamviewer/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-pM-PmxKEuD8/UAouxTdkefI/AAAAAAAAGi8/IY8Ybk-qwU8/s1600-h/TeamViewer%25255B2%25255D.png" alt="TeamViewer" /&gt;
&lt;/p&gt;
&lt;p&gt;h-online: The &lt;a href="http://www.teamviewer.com/en/index.aspx"&gt;TeamViewer&lt;/a&gt; developers have &lt;a href="http://www.teamviewer.com/en/news/361-TeamViewer-security-updates-for-Windows-and-Mac-OS-released.aspx"&gt;released&lt;/a&gt; &lt;a href="http://www.teamviewer.com/en/news/362-TeamViewer-security-updates-for-Linux-released.aspx"&gt;updates&lt;/a&gt; for a potential security vulnerability discovered in the remote access tool. The company recommends that users install the security updates immediately. Versions 5 to 7 of the Windows, Mac OS X and Linux editions of TeamViewer Full and TeamViewer QuickSupport are affected. The flaw does not appear to have been discovered in TeamViewer Host.&lt;/p&gt;
&lt;p&gt;The company has not offered any details of the vulnerability, but updated editions of the software can be obtained from the &lt;a href="http://www.teamviewer.com/en/download/index.aspx"&gt;TeamViewer Download&lt;/a&gt; page. The new version can simply be installed over the previous installation.&lt;/p&gt;</description></item><item><title>Chrome 20 update fixes high-risk security vulnerabilities</title><link>https://omid.dev/2012/07/13/chrome-20-update-fixes-high-risk-security-vulnerabilities/</link><pubDate>Fri, 13 Jul 2012 10:03:00 +0000</pubDate><guid>https://omid.dev/2012/07/13/chrome-20-update-fixes-high-risk-security-vulnerabilities/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh5.ggpht.com/-vYl4yEWgrfI/T__rRbCEeDI/AAAAAAAAGbs/tR0q8JAKK-s/s1600-h/Google_Chrome_Logo%25255B2%25255D.png" alt="Google_Chrome_Logo" /&gt;
&lt;/p&gt;
&lt;p&gt;Google has &lt;a href="http://googlechromereleases.blogspot.com/2012/07/stable-channel-update.html"&gt;published a new update&lt;/a&gt; to the stable 20.x branch of Chrome to close a number of security holes in the WebKit-based web browser. Version 20.0.1132.57 of Chrome addresses a total of three vulnerabilities, all of which are rated as “high severity” by the company.&lt;/p&gt;
&lt;p&gt;These include two use-after-free errors in counter handling and in layout height tracking that were discovered by a security researcher by the name of “miaubiz”. As part of its &lt;a href="https://sites.google.com/a/chromium.org/dev/Home/chromium-security"&gt;Chromium Security Vulnerability Rewards program&lt;/a&gt;, Google paid the researcher, who is number three in the company&amp;rsquo;s &lt;a href="http://www.chromium.org/Home/chromium-security/hall-of-fame"&gt;Security Hall of Fame&lt;/a&gt;, $1,000 for discovering and reporting each of the holes. A third high-risk problem related to object access with JavaScript in PDFs has also been corrected. As usual, further details about the vulnerabilities are being withheld until “a majority of users are up-to-date with the fix”. Other changes include stability improvements, and updates to the V8 JavaScript engine and the built-in Flash player plug-in.&lt;/p&gt;</description></item><item><title>Third edition of vulnerability spotter Secunia PSI</title><link>https://omid.dev/2012/06/29/third-edition-of-vulnerability-spotter-secunia-psi/</link><pubDate>Fri, 29 Jun 2012 20:00:00 +0000</pubDate><guid>https://omid.dev/2012/06/29/third-edition-of-vulnerability-spotter-secunia-psi/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-hYGc7WomQq4/T-4CXzCyLcI/AAAAAAAAGZc/ckx8P2_YTxI/s1600-h/secunia-psi%25255B2%25255D.jpg" alt="secunia-psi" /&gt;
&lt;/p&gt;
&lt;p&gt;Version 3 of &lt;a href="http://secunia.com/products/consumer/psi/"&gt;Personal Software Inspector&lt;/a&gt; (PSI), &lt;a href="http://secunia.com/"&gt;Secunia&lt;/a&gt;‘s free program updater, has been released with a much simplified user interface, enabling less technically astute users to keep their Windows applications up to date as well.&lt;/p&gt;
&lt;p&gt;According to Secunia, the automatic updater has also been enhanced. PSI is now able to keep programs from more than 3,000 companies up to date, though, as before, PSI only cares about updates which fix security vulnerabilities. Version 3 also includes additional translations, including German. The software checks the user&amp;rsquo;s computer for outdated program versions known to contain vulnerabilities and either installs updates or provides links to download them.&lt;/p&gt;</description></item><item><title>Adobe updates Flash Player 11.3 to fix Firefox crashing problem</title><link>https://omid.dev/2012/06/23/adobe-updates-flash-player-11-3-to-fix-firefox-crashing-problem/</link><pubDate>Sat, 23 Jun 2012 20:30:00 +0000</pubDate><guid>https://omid.dev/2012/06/23/adobe-updates-flash-player-11-3-to-fix-firefox-crashing-problem/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-vrvE0aRCcSA/T-YgUVl3ebI/AAAAAAAAGWQ/fwZNQCu7d_c/s1600-h/Flash_Logo_b_200%25255B2%25255D.png" alt="Flash_Logo_b_200" /&gt;
&lt;/p&gt;
&lt;p&gt;Adobe has &lt;a href="http://blogs.adobe.com/sunil/2012/06/21/flash-player-1-3-issues-on-mozilla-firefox/"&gt;released&lt;/a&gt; an updated version of its proprietary Flash Player 11.3 plugin to address a bug that &lt;a href="http://www.h-online.com/news/item/Firefox-13-tripped-up-by-Flash-patch-Update-1619399.html"&gt;caused Firefox 13 on Windows to crash&lt;/a&gt; for some users. The problem is believed to have been related to the recently introduced &lt;a href="http://blogs.adobe.com/asset/2012/06/inside-flash-player-protected-mode-for-firefox.html"&gt;Protected Mode&lt;/a&gt; for the Windows version of Flash Player and the open source web browser; the new mode is designed to isolate the plugin from the rest of the system by running it in its own sandbox.&lt;/p&gt;</description></item><item><title>Critical vulnerabilities closed by Winamp update</title><link>https://omid.dev/2012/06/23/critical-vulnerabilities-closed-by-winamp-update/</link><pubDate>Sat, 23 Jun 2012 20:29:00 +0000</pubDate><guid>https://omid.dev/2012/06/23/critical-vulnerabilities-closed-by-winamp-update/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-bGFP5WLafPA/T-YgDCDk9rI/AAAAAAAAGWA/ukDr1NYb91A/s1600-h/winamp_logo200%25255B2%25255D.png" alt="winamp_logo200" /&gt;
&lt;/p&gt;
&lt;p&gt;With the &lt;a href="http://forums.winamp.com/showthread.php?t=345684"&gt;release&lt;/a&gt; of version 5.63 of &lt;a href="http://www.winamp.com/media-player"&gt;Winamp&lt;/a&gt;, Nullsoft, a division of AOL Music, has eliminated four critical security vulnerabilities in the media player. Three of these were heap-based buffer overflows in Winamp&amp;rsquo;s bmp.w5s component that could have been exploited by an attacker to execute arbitrary code on a victim&amp;rsquo;s system.&lt;/p&gt;
&lt;p&gt;For an attack to be successful, a user must first open a specially crafted AVI file. It has been confirmed that the vulnerability affects version 5.622; other builds may also be affected. The update also addresses unspecified errors in the &lt;em&gt;in_mod.dll&lt;/em&gt; module that could have been used to corrupt memory and could possibly result in arbitrary code being executed. Upgrading to Winamp 5.63, specifically build 3234 (5.6.3.3234), fixes these problems.&lt;/p&gt;</description></item><item><title>Opera 12 has been released</title><link>https://omid.dev/2012/06/14/opera-12-has-been-released/</link><pubDate>Thu, 14 Jun 2012 11:36:00 +0000</pubDate><guid>https://omid.dev/2012/06/14/opera-12-has-been-released/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-_JhpIqYUZwc/T9nFxpyHQbI/AAAAAAAAGRA/wJwgky_aLPA/s1600-h/Opera-logo-new200%25255B2%25255D.png" alt="Opera-logo-new200" /&gt;
&lt;/p&gt;
&lt;p&gt;Norwegian company Opera Software has released &lt;a href="http://www.opera.com/"&gt;Opera 12.00&lt;/a&gt; just a few minutes ago. Opera users who start the browser on their system should see update notifications displayed to them in the next couple of hours. Those who do not want to wait that long can run a manual check for updates with a click on &lt;strong&gt;Opera&lt;/strong&gt; &amp;gt; &lt;strong&gt;Help&lt;/strong&gt; &amp;gt; &lt;strong&gt;Check for Updates&lt;/strong&gt;. The update should then be picked up by the browser and downloaded automatically to the local system.&lt;/p&gt;</description></item><item><title>Sandboxed Flash Player for Firefox: Adobe Flash update closes several critical holes</title><link>https://omid.dev/2012/06/09/sandboxed-flash-player-for-firefox-adobe-flash-update-closes-several-critical-holes/</link><pubDate>Sat, 09 Jun 2012 12:53:00 +0000</pubDate><guid>https://omid.dev/2012/06/09/sandboxed-flash-player-for-firefox-adobe-flash-update-closes-several-critical-holes/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh4.ggpht.com/-RAspI1MLoAs/T9NASlqeg9I/AAAAAAAAGOA/zfLZo3iz0nA/s1600-h/Flash_Logo_b_80%25255B4%25255D.png" alt="Flash_Logo_b_80" /&gt;
&lt;/p&gt;
&lt;p&gt;The H-Online: Adobe has &lt;a href="http://www.adobe.com/support/security/bulletins/apsb12-14.html"&gt;announced&lt;/a&gt; the release of an update for Flash Player on Windows, Mac, Linux, Android 3.x and 4.x, and within its own AIR runtime. The update addresses several critical vulnerabilities which involve memory corruption, stack overflows, integer overflows, security being bypassed, null dereferencing and binary planting (DLL hijacking). All, except the security bypass, could lead to code execution.&lt;/p&gt;
&lt;p&gt;The updates also include a number of &lt;a href="http://blogs.adobe.com/asset/2012/06/flash-player-11-3-delivers-additional-security-capabilities-for-mac-and-firefox-users.html"&gt;security enhancements&lt;/a&gt; on various platforms. The Windows version of Flash Player now offers a production version of “&lt;a href="http://blogs.adobe.com/asset/2012/06/inside-flash-player-protected-mode-for-firefox.html"&gt;Flash Player Protected Mode for Firefox&lt;/a&gt;” which brings a sandbox to the running of Flash, making it harder for attackers to get at other processes.&lt;/p&gt;</description></item><item><title>Microsoft revokes certificates used to sign the Flame trojan</title><link>https://omid.dev/2012/06/04/microsoft-revokes-certificates-used-to-sign-the-flame-trojan/</link><pubDate>Mon, 04 Jun 2012 13:37:00 +0000</pubDate><guid>https://omid.dev/2012/06/04/microsoft-revokes-certificates-used-to-sign-the-flame-trojan/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-Frl63DpJXr8/T8yzsqawVqI/AAAAAAAAGMw/pKVPaFbzx9s/s1600-h/windows%252520update%25255B7%25255D.jpg" alt="windows update" /&gt;
&lt;/p&gt;
&lt;p&gt;Avira TechBlog Wrote:&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;Microsoft released&lt;/em&gt; &lt;a href="http://technet.microsoft.com/en-us/security/advisory/2718704"&gt;&lt;em&gt;Security Advisory 2718704&lt;/em&gt;&lt;/a&gt; &lt;em&gt;which revokes some certificated which apparently were used to sign the&lt;/em&gt; &lt;em&gt;&lt;a href="https://omid.dev/search/?q=Flame"&gt;trojan Flame&lt;/a&gt;__.&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;In a&lt;/em&gt; &lt;a href="http://blogs.technet.com/b/srd/archive/2012/06/03/microsoft-certification-authority-signing-certificates-added-to-the-untrusted-certificate-store.aspx"&gt;&lt;em&gt;blog post&lt;/em&gt;&lt;/a&gt;&lt;em&gt;, Microsoft explains how they discovered that some components of the malware have been signed by certificates that allow software to appear as if it was produced by Microsoft. The certificates issued by the Terminal Services licensing certification authority, which are intended to only be used for license server verification, were also used to sign code and make it look like as if it was originated from Microsoft.&lt;/em&gt;&lt;/p&gt;</description></item><item><title>Firefox 13 Final is available for download [Link]</title><link>https://omid.dev/2012/06/03/firefox-13-final-is-available-for-download-link/</link><pubDate>Sun, 03 Jun 2012 08:49:00 +0000</pubDate><guid>https://omid.dev/2012/06/03/firefox-13-final-is-available-for-download-link/</guid><description>&lt;p&gt;Mozilla Firefox 13 is available for download on Mozilla FTP servers.&lt;/p&gt;
&lt;p&gt;Visual changes in this version is flatten buttons in toolbar, smooth scroll enabled by default, New Home Screen and a new look for New Tab page.&lt;/p&gt;
&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-ZtvAKZat82E/T8shzJAHPvI/AAAAAAAAGLU/LwHGFGJuuyM/s1600-h/FF13%25255B5%25255D.png" alt="" /&gt;
&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Download:&lt;/strong&gt; &lt;a href="https://ftp.mozilla.org/pub/mozilla.org/firefox/releases/13.0/win32/en-US/Firefox%20Setup%2013.0.exe" title="https://ftp.mozilla.org/pub/mozilla.org/firefox/releases/13.0/win32/en-US/Firefox%20Setup%2013.0.exe"&gt;Firefox Setup 13.0.exe&lt;/a&gt; [&lt;a href="http://www.filehippo.com/download_firefox/"&gt;Mirror&lt;/a&gt;]&lt;/p&gt;
&lt;p&gt;MD5: 89bc2ab1a1fa1e2d989d1c551f2a6ddf&lt;br&gt;
Size: 15.8MB&lt;/p&gt;</description></item><item><title>Google releases security update for Chrome 19</title><link>https://omid.dev/2012/05/25/google-releases-security-update-for-chrome-19/</link><pubDate>Fri, 25 May 2012 09:13:00 +0000</pubDate><guid>https://omid.dev/2012/05/25/google-releases-security-update-for-chrome-19/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-7faILWdsqaI/T79GOSXOInI/AAAAAAAAGFc/ftEHEhrBtRk/new-chrome-logo%25255B3%25255D.png?imgmax=800" alt="new-chrome-logo" /&gt;
&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.h-online.com/"&gt;H-Online&lt;/a&gt;: Google has &lt;a href="http://googlechromereleases.blogspot.co.uk/2012/05/stable-channel-update_23.html"&gt;announced an update&lt;/a&gt; to the stable version of Chrome, which brings the browser version to 19.0.1084.52 on Windows, Mac OS X and Linux. The update is a pure security update that does not include any new features – it closes nine vulnerabilities with a Common Vulnerability Scoring System (CVSS) rating of “High” and fixes two problems labelled “Critical” as well as two “Medium” level issues.&lt;/p&gt;
&lt;p&gt;Many of the vulnerabilities are due to bugs in Chrome&amp;rsquo;s memory handling, such as out-of-bounds reads and use-after-free conditions, and Google points out that several of them were detected with their &lt;a href="http://code.google.com/p/address-sanitizer/"&gt;AddressSanitizer&lt;/a&gt; tool. Other bugs were fixed in Chrome&amp;rsquo;s PDF handling code and its V8 JavaScript rendering engine.&lt;/p&gt;</description></item><item><title>Avira update fixes Service Pack bug</title><link>https://omid.dev/2012/05/17/avira-update-fixes-service-pack-bug/</link><pubDate>Thu, 17 May 2012 15:24:00 +0000</pubDate><guid>https://omid.dev/2012/05/17/avira-update-fixes-service-pack-bug/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh5.ggpht.com/-EjEJ2cUIVf0/T7URDsDF6tI/AAAAAAAAGA4/8EHIgvUirW4/s1600-h/avira_logo_red_rgb%252520%2525282%252529%25255B3%25255D.jpg" alt="avira_logo_red_rgb (2)" /&gt;
&lt;/p&gt;
&lt;p&gt;The H-Online: &lt;a href="http://www.avira.com/en/proactiv-application-blocking"&gt;Avira says&lt;/a&gt; that it has resolved the &lt;a href="https://omid.dev/2012/05/avira-av-update-hangs-systems.html"&gt;problems caused&lt;/a&gt; by a Service Pack that was released for its Windows products earlier this week. Users are advised to trigger a manual update to download the fix. Once installed, the update should prevent the program from blocking legitimate Windows applications on systems running Avira.&lt;/p&gt;
&lt;p&gt;On Monday, Avira &lt;a href="http://forum.avira.com/wbb/index.php?page=Thread&amp;amp;postID=1179175#post1179175"&gt;released “Service Pack 0”&lt;/a&gt; for all of its Windows products. Once the update was installed, the “ProActiv” behavioral monitoring component in &lt;a href="http://www.avira.com/en/for-home-avira-antivirus-premium"&gt;Avira Antivirus Premium 2012&lt;/a&gt; and &lt;a href="http://www.avira.com/en/for-home-avira-internet-security"&gt;Avira Internet Security 2012&lt;/a&gt; blocked the execution of essential programs and trusted system processes. For example, ProActiv blocked the Windows registry editor (regedit.exe) and the task scheduler (taskeng.exe).&lt;/p&gt;</description></item><item><title>QuickTime for Windows update plugs security holes</title><link>https://omid.dev/2012/05/17/quicktime-for-windows-update-plugs-security-holes/</link><pubDate>Thu, 17 May 2012 15:21:00 +0000</pubDate><guid>https://omid.dev/2012/05/17/quicktime-for-windows-update-plugs-security-holes/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh3.ggpht.com/-KjtBfYyOcz4/T7UQgYFY0kI/AAAAAAAAGAo/l4tbfWTyVxQ/s1600-h/Quicktime_120%25255B2%25255D.png" alt="Quicktime_120" /&gt;
&lt;/p&gt;
&lt;p&gt;The H-Online: Version 7.7.2 of &lt;a href="http://www.apple.com/quicktime/"&gt;QuickTime&lt;/a&gt; for Windows has been released to address a total of 17 security vulnerabilities in the media player. According to Apple, these include integer, stack and buffer overflows, as well as memory corruption issues, all of which could be could exploited by an attacker to crash the application or execute arbitrary code on a victim&amp;rsquo;s system. For an attack to be successful, a user must first open a malicious web site or a specially crafted file.&lt;/p&gt;</description></item></channel></rss>