Media releases are provided as is by companies and have not been edited or checked for accuracy. Any queries should be directed to the company itself.

3Com's Zero Day Initiative uncovers Microsoft vulnerability disclosed and patched today

  • 15 March, 2006 17:50

<p>Program Leads to Responsible Disclosure of Vulnerability through Collaboration with Vendor; 3Com Protects Customers Before Flaw Disclosed Publicly</p>
<p>Sydney, Australia – 15 March, 2005 – 3Com and its TippingPoint division today announced that a new vulnerability in Microsoft Excel was discovered and disclosed through the Zero Day Initiative (ZDI). Through ZDI, 3Com notified Microsoft of the vulnerability, who worked quickly to issue a corresponding patch today in this month’s Microsoft bulletin, eliminating the threat of a zero day attack. In addition, TippingPointTM Intrusion Prevention Systems (IPS) provided preemptive protection for the critical bulletin announced by Microsoft today.</p>
<p>The vulnerability in Microsoft Excel is a critical vulnerability in the widespread Microsoft Office suite that allows attackers to take complete control of targeted systems. Upon validating the vulnerability, 3Com reported the threat to Microsoft on 24 January, 2006 which in turn applied the necessary resources to address the vulnerability and issued the patch today. 3Com customers using the TippingPoint Intrusion Prevention Systems (IPS) have been preemptively protected against potential zero day attacks targeting the vulnerability.</p>
<p>The goal of the Zero Day Initiative is to enable the responsible disclosure of vulnerabilities in order to make technology more secure for users and businesses. A zero day vulnerability is one that is unknown or one that has been publicly disclosed without a corresponding patch. Through the program, 3Com rewards security researchers for responsibly informing 3Com of newly discovered zero day vulnerabilities. 3Com notifies the affected vendor so a patch can be developed, and the researcher agrees to keep the information confidential until the patch is issued so affected organisations are not at risk. In addition to protecting all users from zero day threats by ensuring information is kept
confidential until a patch is issued, TippingPoint customers are protected against zero day attacks through security filters delivered through the Digital Vaccine® service.</p>
<p>David Endler, director of security research for 3Com’s Tipping Point Division , said ZDI is the only research reward program that adheres to responsible disclosure, keeping the information confidential until a solution is available.</p>
<p>“By carefully managing this vulnerability, we did more than protect our customers through our TippingPoint Intrusion Prevention System. We eliminated the threat of a zero day attack for all Microsoft users, which represent the majority of computer users.”</p>
<p>In addition to protecting customers from the Microsoft Excel vulnerability,
TippingPoint Intrusion Prevention Systems were inoculated against other threats in today’s critical Microsoft bulletin through the Digital Vaccine service, a remote update service that provides regular protection against the latest threats. Today’s bulletin is:</p>
<p>(1) MS06-012
Vulnerabilities in Microsoft Office Could Allow Remote Code Execution
(Rating: Critical)</p>
<p>For more information on the Microsoft vulnerabilities, please visit:
http://www.microsoft.com/technet/security/bulletin/ms06-mar.mspx.</p>
<p>For a full list of ZDI advisories and specific information on the Microsoft vulnerability, please visit: http://www.zerodayinitiative.com/advisories.html.</p>
<p>About TippingPoint, a division of 3Com
TippingPoint, a division of 3Com, is the leading provider of network-based intrusion prevention systems. The TippingPoint IPS is the most decorated in its industry. For a full list of awards, visit http://www.tippingpoint.com/products_certifications.html. Our innovative approach offers customers unmatched network-based security with ultra-high performance, scalability and reliability. TippingPoint is based in Austin, Texas, and can be contacted through its Web site at www.tippingpoint.com or by telephone at 1-888-TRUE-IPS.</p>
<p>About 3Com Corporation
3Com Corporation (NASDAQ: COMS) is a leading provider of secure, converged voice and data networking solutions for enterprises of all sizes. 3Com offers a broad line of innovative products backed by world class sales, service and support, which excel at
delivering business value for its customers. Through its TippingPoint division, 3Com is the leading provider of network-based intrusion prevention systems that deliver in-depth application protection, infrastructure protection, and performance protection for corporate enterprises, government agencies, service providers and academic institutions. For further information, please visit www.3com.com, or the press site www.3com.com/pressbox.</p>
<p>Copyright © 2006 3Com Corporation. 3Com, the 3Com logo and Digital Vaccine are registered trademarks and TippingPoint is a trademark of 3Com Corporation or its subsidiaries. All other company and product names may be trademarks of their respective holders.</p>
<p>Media queries:</p>
<p>Liana Teo
Public Relations Manager, Asia Pacific
3Com Corporation
Phone: (65) 6213 5990
Mobile: (65) 9796 5500
Email: liana_teo@3com.com</p>
<p>Gerard Mansour
Red Agency
(+61) 02 9955 7877
gerard.mansour@redagency.com.au</p>

Most Popular

Brand Post

Most Popular Reviews

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Latest Articles

Resources

PCW Evaluation Team

Luke Hill

MSI GT75 TITAN

I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Laura Johnston

MSI GS65 Stealth Thin

If you can afford the price tag, it is well worth the money. It out performs any other laptop I have tried for gaming, and the transportable design and incredible display also make it ideal for work.

Andrew Teoh

Brother MFC-L9570CDW Multifunction Printer

Touch screen visibility and operation was great and easy to navigate. Each menu and sub-menu was in an understandable order and category

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Featured Content

Product Launch Showcase

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?