Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Windows MHTML Mime-Formatted Request Vulnerability

An information disclosure vulnerability exists in the way MHTML interprets MIME-formatted requests for content blocks within a document. It is possible under certain conditions for this vulnerability to allow an attacker to run a client-side script in the wrong security context. Similar...
Last Update Date: 13 Apr 2011 18:30 Release Date: 13 Apr 2011 5439 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows WordPad Converter Parsing Vulnerability

A remote code execution vulnerability exists in the way that Microsoft WordPad parses specially crafted Word documents. The vulnerability could allow remote code execution if a user opens a specially crafted Word file that includes a malformed structure. An attacker could then install programs...
Last Update Date: 13 Apr 2011 18:18 Release Date: 13 Apr 2011 5309 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Multiple Vulnerabilities

Win32k Use After Free Vulnerability An elevation of privilege vulnerability exists due to the way that Windows Kernel-mode drivers manage kernel-mode driver objects. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs...
Last Update Date: 13 Apr 2011 18:14 Release Date: 13 Apr 2011 5357 Views

RISK: Medium Risk

Medium Risk

Microsoft Office PowerPoint Multiple Vulnerabilities

A remote code execution vulnerability exists in the way that Microsoft PowerPoint handles specially crafted PowerPoint files. An attacker could exploit the vulnerability by creating a specially crafted PowerPoint file that could be included as an e-mail attachment, or hosted on a specially crafted or compromised...
Last Update Date: 13 Apr 2011 18:11 Release Date: 13 Apr 2011 5255 Views

RISK: Medium Risk

Medium Risk

Microsoft Office Excel Multiple Vulnerabilities

A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 13 Apr 2011 18:03 Release Date: 13 Apr 2011 5188 Views

RISK: Medium Risk

Medium Risk

Microsoft MFC Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that certain applications built Microsoft Foundation Classes (MFC) handle the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then...
Last Update Date: 13 Apr 2011 17:59 Release Date: 13 Apr 2011 5431 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Fax Cover Page Editor Memory Corruption Vulnerability

A remote code execution vulnerability exists in the way that the Windows Fax Cover Page Editor improperly parses specially crafted fax cover pages. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts...
Last Update Date: 13 Apr 2011 17:51 Release Date: 13 Apr 2011 5411 Views

RISK: Medium Risk

Medium Risk

Microsoft Office Multiple Vulnerabilities

Office Component Insecure Library Loading Vulnerability A remote code execution vulnerability exists in the way that Microsoft Office handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view...
Last Update Date: 13 Apr 2011 17:45 Release Date: 13 Apr 2011 5287 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows OpenType Font Stack Overflow Vulnerability

A remote code execution vulnerability exists in the way that the OpenType Font (OTF) driver improperly parses specially crafted OpenType fonts. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, ...
Last Update Date: 13 Apr 2011 17:03 Release Date: 13 Apr 2011 5116 Views

RISK: High Risk

High Risk

Microsoft Windows Scripting Memory Reallocation Vulnerability

A remote code execution vulnerability exists in the JScript and VBScript scripting engines due to a memory corruption error. An attacker who successfully exploited this vulnerability could run arbitrary code in the context of the logged-on user. An attacker could then install programs; view, ...
Last Update Date: 13 Apr 2011 16:53 Release Date: 13 Apr 2011 5095 Views