Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

ProFTPD Response Pool Use-After-Free Vulnerability

A vulnerability has been identified in ProFTPD, which can be exploited by malicious people to compromise a vulnerable system.The vulnerability is caused due to a use-after-free error when handling response pool allocation lists and can be exploited to corrupt memory.Successful exploitation...
Last Update Date: 14 Nov 2011 Release Date: 11 Nov 2011 5031 Views

RISK: High Risk

High Risk

Apple Mac OS X Java Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Java for Apple Mac OS X, which can be exploited by malicious users to disclose certain information and by malicious people to disclose potentially sensitive information, hijack a user's session, conduct DNS cache poisoning attacks, manipulate certain data...
Last Update Date: 10 Nov 2011 11:25 Release Date: 10 Nov 2011 4741 Views

RISK: Medium Risk

Medium Risk

IBM WebSphere Application Server Web Services Feature Pack Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IBM WebSphere Application Server Web Services Feature Pack, which can be exploited by malicious people to cause a Denial of Service (DoS).WSRMModule holds on to AxisService references and eventually causes OutOfMemory error.org.apache.commons.logging...
Last Update Date: 10 Nov 2011 Release Date: 8 Nov 2011 5044 Views

RISK: High Risk

High Risk

Mozilla Products Multiple vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox and Thunderbird, which can be exploited by malicious people to execute arbitrary code and take complete control of an affected system.
Last Update Date: 9 Nov 2011 12:39 Release Date: 9 Nov 2011 4955 Views

RISK: High Risk

High Risk

Adobe Shockwave Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Shockwave Player, which can be exploited by attackers to run malicious code on the affected system.
Last Update Date: 9 Nov 2011 12:34 Release Date: 9 Nov 2011 4668 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows TrueType Font Parsing Vulnerability

A denial of service vulnerability exists in the Microsoft Windows kernel. This vulnerability is caused when the Windows kernel improperly processes a specifically crafted TrueType font file. An attacker who successfully exploited this vulnerability could cause the affected system to stop responding and restart.
Last Update Date: 9 Nov 2011 12:32 Release Date: 9 Nov 2011 4802 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Active Directory LDAPS Authentication Bypass Vulnerability

An elevation of privilege vulnerability exists in Active Directory when configured to use LDAP over SSL (LDAPS). An attacker could exploit this vulnerability by using a previously revoked certificate to authenticate to the Active Directory domain and gain access to network resources or run code under the privileges...
Last Update Date: 9 Nov 2011 12:29 Release Date: 9 Nov 2011 4804 Views

RISK: High Risk

High Risk

Microsoft Windows Mail / Windows Meeting Space Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that Windows Mail and Windows Meeting Space handle the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, ...
Last Update Date: 9 Nov 2011 12:26 Release Date: 9 Nov 2011 4746 Views

RISK: High Risk

High Risk

Microsoft Windows TCP/IP Reference Counter Overflow Vulnerability

A remote code execution vulnerability exists in the Windows TCP/IP stack due to the processing of a continuous flow of specially crafted UDP packets. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view...
Last Update Date: 9 Nov 2011 12:22 Release Date: 9 Nov 2011 4708 Views

RISK: High Risk

High Risk

Microsoft Windows TrueType Font Parsing Code Execution Vulnerability

A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious people to  compromise a vulnerable system. The vulnerability is caused due to an error within the Win32k kernel-mode driver (win32k.sys) when parsing TrueType fonts.
Last Update Date: 7 Nov 2011 10:48 Release Date: 7 Nov 2011 4709 Views