Articles about bug

Cat discovers GNOME desktop bug

It's a tip of the open source hat today to a cat belonging to one Christoph Reiter, which recently discovered a bug in Linux desktop GNOME. Christoph was running GS 3.18.1 in Debian sid when, for reasons likely related to the familiar "uninvited feline on keyboard" scenario, the following catastrophic sequence was initiated …
Lester Haines, 20 Nov 2015
Bug

Hypervisor headaches: Hosts hosed by x86 exception bugs

Various hypervisors and operating systems are scrambling to patch around an x86 bug that lets an admin-level guest crash the underlying CPU, causing a denial-of-service to anyone else on the same machine. The issue, described here, is that with some x86 CPUs, an attacker with kernel-mode code execution privileges on a guest …
Cartoon - Private SNAFU

Cisco shipped UCS servers with rotten RAID settings

If you've been wondering about the server performance in your Cisco Business Edition 6000/7000 telephony system, wonder no more: The Borg has issued a field notice that the system shipped with misconfigured RAID. The Cisco field notice advises sysadmins that the correct settings for the kit are as follows: Read Ahead Policy …
iOS 6 and 7

iOS 9 update set to bork 'hundreds of thousands of EU businesses'

Mobile merchant terminal company iZettle has warned its users that the Bluetooth issues within Apple's operating system could seriously affect payment processes, and has strongly warned merchants using its kit not to upgrade to iOS9 until it says so. iZettle provides its users with card readers allowing them to take payments …
Simon Rockman, 22 Sep 2015
Eve in the Garden of Eden talking to a rather angry God on Snapchat

Ins0mnia bug means malicious iOS apps WILL NEVER DIE

A newly discovered vulnerability allows an iOS application to continue to run for an unlimited amount of time, even if an application gets terminated by a user. The flaw – dubbed Ins0mnia – potentially allows any iOS application to bypass Apple background restrictions, security researchers at FireEye warn. FireEye notified …
John Leyden, 27 Aug 2015

Microsoft to spoofed Skype users: Change your account passwords NOW

An unknown number of frustrated Skype customers have been pestered by spoof messages on the Microsoft service for weeks, but the company is yet to close what appears to be a gaping hole in its software. Instead, Redmond has advised Skype users to change their account passwords. But complaints are building up about the lack of …
Kelly Fiveash, 19 Jul 2015

Dodgy colon bug is a total pain in the butt for Skype users today

Adding a single colon to a web link is enough to kill Skype on your PC, Android and iOS device. Sending the characters http://: in a chat conversation via the software will cause the application to crash, and bomb all over again when restarted as the application will process the chat characters again before you get a chance to …
Double Facepalm; when one facepalm is not enough.

Android Bitcoin wallet Blockchain was briefly borked

In “rare circumstances”, the Android Bitcoin wallet Blockchain could prove a catastrophic failure for users, so its authors have rushed out an update. According to the app's advisory, the bug affected a mere “handful” of users, with one report noting that the bug ended up with one lucky Bitcoin account holder being sent 34 …

VMware: Yep, ESXi bug plays 'finders keepers' with data backups

Running VMware’s ESXi and diligently backing up your data in the belief it’s safe as houses? Think again. VMware has quietly ‘fessed up to the existence of a bug affecting all versions of its bare-metal hypervisor. It copped the problem in its knowledge base as users began cottoning on to the fact something was amiss in their …
Gavin Clarke, 3 Nov 2014

The NO-NAME vuln: wget mess patched without a fancy brand

Sysadmins: another venerable and nearly-ubiquitous *nix tool, wget, needs patching because of a bug first reported by HD Moore. As the Red Hat Bugzilla report describes, the bug was a beauty: a recursive directory fetch over FTP would let an attacker “create arbitrary files, directories or symbolic links” due to a symlink flaw …

Mozilla fixes CRITICAL security holes in Firefox, urges v31 upgrade

Mozilla has released a bug-and-security update for Firefox, with 11 security fixes, three of them critical. Chief among the security patches is a use-after-free bug the organisation says was discovered by one James Kitchener. From the advisory: “Mozilla community member James Kitchener reported a crash in DirectWrite when …

Users folder vanished after OS X 10.9.3 update? Here's a fix

Updated, Take Two If you updated to OS X Mavericks 10.9.3 after it was released on Thursday, did your Users folder disappear from the Finder listing of the root level of your startup volume? Happened to some; didn't happen to others. Go figure. No, it hasn't been deleted – that would certainly be a colossal cock-up on Apple's part, now, wouldn' …
Rik Myslewski, 16 May 2014

Staunch your Heartbleed patching: FreeBSD has a nasty credentials leak

Got FreeBSD? Get busy on the patch, because a problem with its TCP ordering has emerged, with both denial-of-service and data leakage as possible effects. The issue exists in how the popular Unix-like operating system handles TCP packets received out-of-order. Packets are held in a reassembly queue until they can be re-ordered …

Did a date calculation bug just cost hard-up Co-op Bank £110m?

A programming blunder appears to have landed the cash-strapped Co-op Bank an unexpected bill for £110m. In its financial report [PDF] for 2013, which last week revealed a £1.3bn loss, the bank said it had to stump up nine-figure "costs relating to breaches of the Consumer Credit Act". Specifically, the scandal-hit bank noted …
Gavin Clarke, 15 Apr 2014
bug on keyboard

Joomla issues upgrade to patch critical SQL vuln

Joomla's developers have moved to fix a critical SQL injection vulnerability – but are coming under fire for taking a month to address the issue. The version 3.2.3 update, available since late last week, is described by Joomla as fixing a high priority core SQL injection bug (along with two medium priority XSS bugs and an …
Google password bug fix screenshot

Google preps Chrome password-blab bug fix

A few months after the bug was discovered, Google's decided it should experiment with a fix for its Chrome password exposure bug feature. As El Reg noted back in August: “If the victim, shall we say, is using Chrome, surf over to chrome://settings/passwords, click on a starred-out saved website password and click on "Show"; …
The Register breaking news

Google cyber-knight lances Microsoft for bug-hunter 'hostilities'

Top Google engineer Tavis Ormandy has slammed Microsoft for apparently treating security bug hunters with “great hostility”. He blasted Redmond's behaviour towards those who report vulnerabilities as he publicly revealed a new unpatched security hole in the Windows operating system - a bug that can be exploited to crash …
John Leyden, 28 May 2013
The Register breaking news

Apple fixes iOS passcode-bypass hack with 6.1.3 update

It has taken Apple a little over a month and two updates to do it, but the latest iOS 6.1.3 update means your beloved iDevice can now be safe again from nimble-fingered thieves. In February, an iPhone user discovered that a certain pattern of swipes and key presses would allow the password locking screen to be bypassed on …
Iain Thomson, 19 Mar 2013

Create a news alert about bug, or find more stories about bug.

Biting the hand that feeds IT © 1998–2018