Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Uniscribe Remote Code Execution Vulnerability

A remote code execution vulnerability exists when Windows Uniscribe improperly parses specially crafted fonts. An attacker who successfully exploited the vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights.
Last Update Date: 9 Dec 2015 13:55 Release Date: 9 Dec 2015 6329 Views

RISK: Medium Risk

Medium Risk

Microsoft Silverlight Multiple Vulnerabilities

Microsoft Silverlight RCE Vulnerability A remote code execution vulnerability exists when Microsoft Silverlight incorrectly handles certain open and close requests that can result in read- and write-access violations. Multiple Microsoft Silverlight Information Disclosure Vulnerabilities Multiple information disclosure vulnerabilities exist when Silverlight fails to properly...
Last Update Date: 9 Dec 2015 13:55 Release Date: 9 Dec 2015 6554 Views

RISK: Medium Risk

Medium Risk

Microsoft Graphics Component Remote Code Execution Vulnerabilities

Multiple remote code execution vulnerabilities exist when the Windows font library improperly handles specially crafted embedded fonts. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights.
Last Update Date: 9 Dec 2015 13:55 Release Date: 9 Dec 2015 6167 Views

RISK: High Risk

High Risk

Microsoft Windows DNS Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly parse requests. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account. Windows servers that are configured as DNS...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 6248 Views

RISK: Medium Risk

Medium Risk

Microsoft JScript and VBScript Cumulative Security Update

Scripting Engine Information Disclosure Vulnerability An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user’s computer or data. Scripting Engine Memory Corruption Vulnerability A remote code execution vulnerability...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 6203 Views

RISK: High Risk

High Risk

Microsoft Edge Cumulative Security Update

Multiple Microsoft Edge Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Microsoft Edge improperly accesses objects in memory. The vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. Microsoft Browser Elevation of Privilege VulnerabilityAn...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 6336 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Cumulative Security Update

Multiple Internet Explorer Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Internet Explorer improperly accesses objects in memory. These vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. Multiple Microsoft Browser XSS Filter Bypass...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 6428 Views

RISK: High Risk

High Risk

Apple Multiple OS and Applications Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple iOS, tvOS, OS X, watchOS, Safari and Xcode, which can be exploited by remote attacker to execute arbitrary code.
Last Update Date: 9 Dec 2015 12:42 Release Date: 9 Dec 2015 6538 Views

RISK: Medium Risk

Medium Risk

OpenSSL Multiple Vulnerabilities

Multiple vulnerabilities have been identified in OpenSSL. A remote user can cause the target service to crash and obtain potentially sensitive information on the target system.A remote server can send a specially crafted ServerKeyExchange for an anonymous DH ciphersuite with the value of p set to to...
Last Update Date: 9 Dec 2015 Release Date: 7 Dec 2015 6187 Views

RISK: High Risk

High Risk

Apache OpenOffice Remote Code Execution Vulnerabilities

Multiple vulnerabilities have been identified in Apache OpenOffice, which can be exploited by remote attacker to execute arbitrary code on the target system.A remote user can create a specially crafted document that, when loaded by the target user, will trigger a bug in the handling...
Last Update Date: 7 Dec 2015 Release Date: 9 Nov 2015 6087 Views