Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Visual Basic for Applications VBE6.DLL Stack Memory Corruption Vulnerability( 12 May 2010 )

A remote code execution vulnerability exists in the way that Microsoft Visual Basic for Applications searches for ActiveX controls. This vulnerability could allow remote code execution if a host application opens and passes a specially crafted file to the Visual Basic for Applications runtime. If a user is...
Last Update Date: 28 Jan 2011 Release Date: 12 May 2010 4655 Views

RISK: Medium Risk

Medium Risk

Apple Safari "parent.close()" Code Execution Vulnerability

A vulnerability has been identified in Apple Safari, which could be exploited by attackers to compromise a vulnerable system.The vulnerability is caused due to an error in the handling of parent windows and can result in a function call using an invalid pointer. This can be...
Last Update Date: 28 Jan 2011 Release Date: 10 May 2010 4657 Views

RISK: Medium Risk

Medium Risk

Adobe Photoshop CS4 TIFF Handling Buffer Overflow Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Photoshop CS4, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by buffer overflow errors when processing malformed ".TIFF" files, which could be exploited by attackers to crash an affected application or...
Last Update Date: 28 Jan 2011 Release Date: 4 May 2010 4766 Views

RISK: Medium Risk

Medium Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which could be exploited by attackers to bypass security restrictions or compromise a vulnerable system.1. Due to a memory corruption error within HTML5 Media handling.2. Due to a memory corruption error within font handling....
Last Update Date: 28 Jan 2011 Release Date: 29 Apr 2010 4725 Views

RISK: Medium Risk

Medium Risk

Opera Browser "document.write()" Uninitialized Memory Vulnerability

A vulnerability has been identified in Opera, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused due to an uninitialized memory when writing a large amount of data to a web page e.g. using the "document....
Last Update Date: 28 Jan 2011 Release Date: 28 Apr 2010 4795 Views

RISK: Medium Risk

Medium Risk

Google Chrome mutliple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which could be exploited by remote attackers to bypass restrictions, disclose sensitive information or compromise a vulnerable system.1. An unspecified type confusion error with forms.2. A HTTP request errors, which could allow cross...
Last Update Date: 28 Jan 2011 Release Date: 22 Apr 2010 4701 Views

RISK: Medium Risk

Medium Risk

MIT Kerberos KDC "process_tgs_req()" Double Free Vulnerability

A vulnerability has been identified in MIT Kerberos, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a double free error within the "process_tgs_req()" function when handling renewal or validation of existing tickets, which could allow attackers...
Last Update Date: 28 Jan 2011 Release Date: 22 Apr 2010 4774 Views

RISK: Medium Risk

Medium Risk

HP Operations Manager ActiveX Remote Buffer Overflow Vulnerability

A vulnerability has been identified in HP Operations Manager for Windows, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a buffer overflow error in the "srcvw4.dll" and "srcvw32.dll" ActiveX controls when...
Last Update Date: 28 Jan 2011 Release Date: 21 Apr 2010 4773 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X ATS Font Processing Invalid Index Vulnerability

A vulnerability has been identified in Apple Mac OS X, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by an invalid index within the Apple Type Services (ATS) when processing embedded fonts via the "TType1ParsingContext::SpecialEncoding()" ...
Last Update Date: 28 Jan 2011 Release Date: 16 Apr 2010 4767 Views

RISK: Medium Risk

Medium Risk

Cisco Secure Desktop ActiveX Control File Download Vulnerability

A vulnerability has been identified in Cisco Secure Desktop, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error in the CSDWebInstaller ActiveX control that fails to properly verify the integrity of an executable file that is used by...
Last Update Date: 28 Jan 2011 Release Date: 16 Apr 2010 4829 Views