Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to conduct spoofing attacks, disclose potentially sensitive information, and compromise a user's system.A use-after-free error exists in speech input elements.A use-...
Last Update Date: 14 Nov 2013 10:50 Release Date: 14 Nov 2013 6291 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Digital Signatures Denial of Service Vulnerability

A denial of service vulnerability exists in implementations of X.509 certificate parsing that could cause an affected web service to stop responding. The vulnerability is caused when the X.509 certificate validation operation fails to handle a specially crafted X.509 certificate.
Last Update Date: 13 Nov 2013 17:05 Release Date: 13 Nov 2013 6202 Views

RISK: Medium Risk

Medium Risk

Microsoft Outlook S/MIME AIA Vulnerability

An information disclosure vulnerability exists when Microsoft Outlook does not properly handle the expansion of S/MIME certificate metadata. An attacker who successfully exploited this vulnerability could ascertain system information, such as the IP address and open TCP ports, from the target system and other systems...
Last Update Date: 13 Nov 2013 17:04 Release Date: 13 Nov 2013 6249 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Ancillary Function Driver Information Disclosure Vulnerability

An information disclosure vulnerability exists when the Windows kernel-mode driver improperly handles copying data between kernel and user memory.
Last Update Date: 13 Nov 2013 17:04 Release Date: 13 Nov 2013 6195 Views

RISK: Medium Risk

Medium Risk

Microsoft Hyper-V Address Corruption Vulnerability

An elevation of privilege vulnerability exists in Hyper-V on Windows 8 and Windows Server 2012. An attacker who successfully exploited this vulnerability could execute arbitrary code as System in another virtual machine (VM) on the shared Hyper-V host. An attacker would not...
Last Update Date: 13 Nov 2013 17:03 Release Date: 13 Nov 2013 6199 Views

RISK: Medium Risk

Medium Risk

Microsoft Office Remote Code Execution Vulnerabilities

WPD File Format Memory Corruption VulnerabilityA remote code execution vulnerability exists in the way that affected Microsoft Office software parses specially crafted WordPerfect document (.wpd) files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install...
Last Update Date: 13 Nov 2013 17:03 Release Date: 13 Nov 2013 6296 Views

RISK: Medium Risk

Medium Risk

Microsoft ActiveX InformationCardSigninHelper Vulnerability

A remote code execution vulnerability exists in the InformationCardSigninHelper Class ActiveX control, icardie.dll. An attacker could exploit the vulnerability by constructing a specially crafted webpage. When a user views the webpage, the vulnerability could allow remote code execution. An attacker who successfully exploited...
Last Update Date: 13 Nov 2013 17:03 Release Date: 13 Nov 2013 6861 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Graphics Device Interface Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) processes specially crafted Windows Write files in WordPad. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; ...
Last Update Date: 13 Nov 2013 17:02 Release Date: 13 Nov 2013 6229 Views

RISK: Medium Risk

Medium Risk

Microsoft Internet Explorer Cumulative Security Update

Internet Explorer Information Disclosure VulnerabilityAn information disclosure vulnerability exists in the way that Internet Explorer handles specially crafted web content when generating print previews. An attacker who successfully exploited this vulnerability could gather information from any page that the victim is viewing.Internet Explorer Information Disclosure VulnerabilityAn information...
Last Update Date: 13 Nov 2013 17:02 Release Date: 13 Nov 2013 6083 Views

RISK: Extremely High Risk

Extremely High Risk

Microsoft Internet Explorer ActiveX Control Code Execution Vulnerability

A vulnerability has been identified in Internet Explorer, which can be exploited by malicious people to compromise a user's system.   The vulnerability is caused due to an error within an ActiveX control. Successful exploitation allows execution of arbitrary code. For detail of the vulnerability...
Last Update Date: 13 Nov 2013 Release Date: 12 Nov 2013 6637 Views