Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft Office IME (Chinese) Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists due to the way that the Microsoft Office IME (Chinese) improperly exposes configuration options not designed to run on the secure desktop. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then...
Last Update Date: 14 Dec 2011 12:27 Release Date: 14 Dec 2011 4520 Views

RISK: High Risk

High Risk

Microsoft Windows Media Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Windows Media Player and Windows Media Center handle .dvr-ms files. This vulnerability could allow an attacker to execute arbitrary code if the attacker convinces a user to open a specially crafted .dvr-ms file...
Last Update Date: 14 Dec 2011 12:27 Release Date: 14 Dec 2011 4446 Views

RISK: High Risk

High Risk

Microsoft Windows Kernel-Mode Drivers Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the Windows kernel due to improper handling of a specially crafted TrueType font file. The vulnerability could allow an attacker to run code in kernel-mode and then install programs; view, change, or delete data; or create...
Last Update Date: 14 Dec 2011 12:26 Release Date: 14 Dec 2011 4451 Views

RISK: Medium Risk

Medium Risk

Winamp AVI / IT File Processing Vulnerabilities

Multiple vulnerabilities have been identified in Winamp, which can be exploited by malicious people to compromise a user's system. An integer overflow error in the in_avi.dll plugin when allocating memory using the number of streams header value can be exploited to cause a heap...
Last Update Date: 13 Dec 2011 11:37 Release Date: 13 Dec 2011 4566 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Remote Code Execution Vulnerability

A vulnerability has been identified in Adobe Flash Player, which can be exploited by malicious people to compromise a user's system.  The vulnerability is caused due to an unspecified error. Successful exploitation allows execution of arbitrary code.   Notes: Vendor supplied patch is currently...
Last Update Date: 9 Dec 2011 10:28 Release Date: 9 Dec 2011 4737 Views

RISK: High Risk

High Risk

Foxit Reader Unspecified Memory Corruption Vulnerability

A vulnerability has been identified in Foxit Reader, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an unspecified error.
Last Update Date: 8 Dec 2011 10:07 Release Date: 8 Dec 2011 4569 Views

RISK: Medium Risk

Medium Risk

Opera Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Opera, where one has an unknown impact and others can be exploited by malicious people to bypass certain security features, disclose potentially sensitive information, and hijack a user's session. An unspecified error exists. No further information is...
Last Update Date: 7 Dec 2011 14:26 Release Date: 7 Dec 2011 4922 Views

RISK: Medium Risk

Medium Risk

Blue Coat ProxyAV libpng Buffer Overflow Vulnerability

Multiple vulnerabilities have identified in Blue Coat ProxyAV, which can be exploited by malicious people to compromise a vulnerable device.An error within progressive applications when handling image row data can be exploited to potentially cause a buffer overflow by e.g. providing one additional image...
Last Update Date: 6 Dec 2011 11:43 Release Date: 6 Dec 2011 4700 Views

RISK: Medium Risk

Medium Risk

Serv-U FTPS Server Command Channel SSL Negotiation and FTP Server Directory Traversal Vulnerability

Two vulnerability have been identified in Serv-U, which can be exploited by malicious people to bypass certain security restrictions, disclose potentially sensitive information and manipulate certain data.The vulnerability is caused due to the FTPS server leaving the command channel in an operational state, ...
Last Update Date: 6 Dec 2011 Release Date: 2 Dec 2011 4770 Views

RISK: Medium Risk

Medium Risk

HP LaserJet Printers / Digital Senders Unauthorized Firmware Update Vulnerability

A vulnerability has been identified in various HP LaserJet Printers and HP Digital Senders, which can be exploited by malicious people to bypass certain security restrictions. The vulnerability is caused due to an error within the Remote Firmware Update (RFU) mechanism, which does not check...
Last Update Date: 2 Dec 2011 15:27 Release Date: 2 Dec 2011 5748 Views