Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

CA Products HIPSEngine XMLSecDB ActiveX File Creation Vulnerability

A vulnerability has been identified in CA Host-Based Intrusion Prevention System (HIPS) and CA Internet Security Suite (ISS), which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a design error in the XMLSecDB ActiveX control...
Last Update Date: 25 Feb 2011 16:40 Release Date: 25 Feb 2011 5378 Views

RISK: High Risk

High Risk

Novell NetWare XNFS "xdrDecodeString()" Code Execution Vulnerability

A vulnerability has been identified in Novell NetWare, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by an input validation error in the "xdrDecodeString()" function within the "XNFS.NLM" component when handling...
Last Update Date: 25 Feb 2011 16:38 Release Date: 25 Feb 2011 5390 Views

RISK: Medium Risk

Medium Risk

Novell ZENworks Configuration Management TFTP Remote Heap Overflow Vulnerability

A vulnerability has been identified in Novell ZENworks Configuration Management (ZCM), which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a heap overflow error in the "novell-tftp.exe" component when processing requests sent to...
Last Update Date: 25 Feb 2011 Release Date: 18 Feb 2011 5688 Views

RISK: Medium Risk

Medium Risk

Cisco Security Agent "st_upload" Remote File Creation Vulnerability

A vulnerability has been identified in Cisco Security Agent, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by an input validation error in the "webagent.exe" component when processing "st_upload" POST requests...
Last Update Date: 25 Feb 2011 Release Date: 18 Feb 2011 5464 Views

RISK: High Risk

High Risk

Oracle Sun Java JDK, JRE and SDK Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle Sun Java JDK, JRE and SDK, which could be exploited by remote attackers or malicious users to manipulate or gain knowledge of sensitive information, bypass restrictions, cause a denial of service or compromise a vulnerable system. These issues...
Last Update Date: 25 Feb 2011 Release Date: 18 Feb 2011 6063 Views

RISK: High Risk

High Risk

Asterisk UPDTL Buffer Overflow Vulnerabilities

 Multiple vulnerabilities have been identified in Asterisk, which could be exploited by remote attackers to cause a denial of service or execute arbitrary code. These issues are caused by stack and heap overflow errors in the UDPTL decoding routines, which could be exploited by remote attackers...
Last Update Date: 23 Feb 2011 15:24 Release Date: 23 Feb 2011 5408 Views

RISK: High Risk

High Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Flash Player, which could be exploited by remote attackers to compromise a vulnerable system. These issues are caused by input validation errors, memory corruptions, and integer overflow errors when processing malformed Flash content, which could...
Last Update Date: 16 Feb 2011 Release Date: 10 Feb 2011 5185 Views

RISK: High Risk

High Risk

Microsoft Windows SMB "mrxsmb.sys" Remote Heap Overflow Vulnerability

A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to cause a denial of service or take complete control of a vulnerable system. This issue is caused by a heap overflow error in the "BowserWriteErrorLogEntry()" function within...
Last Update Date: 16 Feb 2011 17:01 Release Date: 16 Feb 2011 6001 Views

RISK: High Risk

High Risk

VMware Products Code Execution and Security Bypass Vulnerabilities

Multiple vulnerabilities have been identified in various VMware products, which could be exploited by attackers or malicious users to bypass security restrictions, gain knowledge of certain information, cause a denial of service or execute arbitrary code. These issues are caused by errors in...
Last Update Date: 16 Feb 2011 Release Date: 14 Feb 2011 5691 Views

RISK: Medium Risk

Medium Risk

Novell iPrint Server LPD Code Execution Vulnerability

A vulnerability has been identified in Novell iPrint for Linux Open Enterprise Server, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by a buffer overflow error in LPD when processing malformed data, which could be exploited...
Last Update Date: 11 Feb 2011 17:46 Release Date: 11 Feb 2011 5506 Views