Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

BlackBerry Products PDF Distiller Remote Code Execution Vulnerability

A vulnerability has been identified in BlackBerry Enterprise Server and BlackBerry Professional Software, which could be exploited by remote attackers to execute arbitrary code. This issue is caused by a buffer overflow error in the PDF distiller of the BlackBerry Attachment Service component when processing malformed PDF files...
Last Update Date: 28 Jan 2011 Release Date: 16 Dec 2010 4750 Views

RISK: Medium Risk

Medium Risk

Citrix Access Gateway Legacy Authentication Command Injection Vulnerability

A vulnerability has been identified in Citrix Access Gateway, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by an error in the NT4 and NTLM authentication components, which could allow an attacker to subvert the authentication...
Last Update Date: 28 Jan 2011 Release Date: 16 Dec 2010 4873 Views

RISK: Medium Risk

Medium Risk

F-Secure Products Binary Loading Vulnerability

A vulnerability has been identified in F-Secure products, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error when loading binaries from the current working directory, which could allow attackers to execute arbitrary code by tricking...
Last Update Date: 28 Jan 2011 Release Date: 16 Dec 2010 4833 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows OpenType Font Multiple Vulnerabilities

A remote code execution vulnerability exists in the way that the OpenType Font (OTF) driver improperly parses specially crafted OpenType fonts. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, ...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4526 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Task Scheduler Vulnerability

An elevation of privilege vulnerability exists in the way that the Windows Task Scheduler improperly validates whether scheduled tasks run within the intended security context. An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4629 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Media Encoder Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Windows handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; ...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4636 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Movie Maker Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that Windows Movie Maker handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4616 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Netlogon RPC Null dereference DOS Vulnerability

A remote authenticated denial of service vulnerability exists in implementations of the Netlogon RPC Service on affected versions of Windows Server. An attacker who successfully exploited this vulnerability could cause affected versions of the Windows Server to restart.
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4748 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Internet Connection Signup Wizard Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that the Internet Connection Signup Wizard, a component of Microsoft Windows, handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4505 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel NDProxy Buffer Overflow Vulnerability

An elevation of privilege vulnerability exists in the Routing and Remote Access NDProxy component of the Windows kernel due to improper validation of input passed from user mode to the kernel. The vulnerability could allow an attacker to run code with elevated privileges. A local attacker who successfully...
Last Update Date: 28 Jan 2011 Release Date: 15 Dec 2010 4612 Views