Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Opera Browser "document.write()" Uninitialized Memory Vulnerability

A vulnerability has been identified in Opera, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused due to an uninitialized memory when writing a large amount of data to a web page e.g. using the "document....
Last Update Date: 28 Jan 2011 Release Date: 28 Apr 2010 4404 Views

RISK: Medium Risk

Medium Risk

Google Chrome mutliple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which could be exploited by remote attackers to bypass restrictions, disclose sensitive information or compromise a vulnerable system.1. An unspecified type confusion error with forms.2. A HTTP request errors, which could allow cross...
Last Update Date: 28 Jan 2011 Release Date: 22 Apr 2010 4321 Views

RISK: Medium Risk

Medium Risk

MIT Kerberos KDC "process_tgs_req()" Double Free Vulnerability

A vulnerability has been identified in MIT Kerberos, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a double free error within the "process_tgs_req()" function when handling renewal or validation of existing tickets, which could allow attackers...
Last Update Date: 28 Jan 2011 Release Date: 22 Apr 2010 4408 Views

RISK: Medium Risk

Medium Risk

HP Operations Manager ActiveX Remote Buffer Overflow Vulnerability

A vulnerability has been identified in HP Operations Manager for Windows, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a buffer overflow error in the "srcvw4.dll" and "srcvw32.dll" ActiveX controls when...
Last Update Date: 28 Jan 2011 Release Date: 21 Apr 2010 4405 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X ATS Font Processing Invalid Index Vulnerability

A vulnerability has been identified in Apple Mac OS X, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by an invalid index within the Apple Type Services (ATS) when processing embedded fonts via the "TType1ParsingContext::SpecialEncoding()" ...
Last Update Date: 28 Jan 2011 Release Date: 16 Apr 2010 4388 Views

RISK: Medium Risk

Medium Risk

Cisco Secure Desktop ActiveX Control File Download Vulnerability

A vulnerability has been identified in Cisco Secure Desktop, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error in the CSDWebInstaller ActiveX control that fails to properly verify the integrity of an executable file that is used by...
Last Update Date: 28 Jan 2011 Release Date: 16 Apr 2010 4457 Views

RISK: Medium Risk

Medium Risk

Oracle Products and Components Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle product and components, which could be exploited by attackers to gain knowledge of sensitive information, cause a denial of service or compromise a vulnerable system.
Last Update Date: 28 Jan 2011 Release Date: 14 Apr 2010 4368 Views

RISK: Medium Risk

Medium Risk

Microsoft SMB Client Could Allow Remote Code Execution Vulnerabilities

1. SMB Client Incomplete Response VulnerabilityA denial of service vulnerability exists in the way that the Microsoft Server Message Block (SMB) client implementation handles specially crafted SMB responses. An attempt to exploit the vulnerability would not require authentication, allowing an attacker to exploit the vulnerability...
Last Update Date: 28 Jan 2011 Release Date: 14 Apr 2010 4274 Views

RISK: Medium Risk

Medium Risk

Microsoft VBScript Scripting Engine Could Allow Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that VBScript interacts with Windows Help files when using Internet Explorer. If a malicious Web site displayed a specially crafted dialog box and a user pressed the F1 key, the Windows Help System would be started with a Windows...
Last Update Date: 28 Jan 2011 Release Date: 14 Apr 2010 4230 Views

RISK: Medium Risk

Medium Risk

Microsoft Visio Could Allow Remote Code Execution Vulnerabilities

1. Visio Attribute Validation Memory Corruption VulnerabilityA remote code execution vulnerability exists in the way that Microsoft Office Visio validates attributes when handling specially crafted Visio files.An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install...
Last Update Date: 28 Jan 2011 Release Date: 14 Apr 2010 4173 Views