Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Cisco IOS XR Packet Processing Flaw Vulnerability

A vulnerability has been identified in Cisco IOS XR. A remote user can cause denial of service conditions.   A remote user can send a specially crafted packet to the target device to cause the route processor to be unable to transmit route processor-based protocol packets to...
Last Update Date: 31 May 2012 15:29 Release Date: 31 May 2012 7204 Views

RISK: Medium Risk

Medium Risk

IBM Java 7 Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IBM Java, which can be exploited by malicious users to disclose certain information and by malicious people to disclose potentially sensitive information, hijack a user's session, conduct DNS cache poisoning attacks, manipulate certain data, cause a DoS...
Last Update Date: 31 May 2012 15:29 Release Date: 31 May 2012 7261 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, where some have unknown impacts and others can be exploited by malicious people to compromise a user's system.An unspecified error exists in the v8 garbage collection, which may result in a crash.An out-...
Last Update Date: 25 May 2012 10:28 Release Date: 25 May 2012 7451 Views

RISK: Medium Risk

Medium Risk

Symantec Endpoint Protection Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Symantec Endpoint Protection, which can be exploited by a remote user to cause remote code execution, denial of service and elevation of privilege. A remote authenticated user can conduct network scans of the target Symantec Endpoint Protection Manager host to cause...
Last Update Date: 24 May 2012 11:05 Release Date: 24 May 2012 7431 Views

RISK: High Risk

High Risk

Novell iPrint Server `attributes-natural-language´ Buffer Overflow Vulnerability

A vulnerability has been identified in Novell Open Enterprise Server, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to an error when handling the "attributes-natural-language" attribute and can be exploited to cause...
Last Update Date: 22 May 2012 Release Date: 3 Feb 2012 7896 Views

RISK: High Risk

High Risk

PHP `php_register_variable_ex()´ Code Execution Vulnerability

A vulnerability has been identified in PHP, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a logic error within the "php_register_variable_ex()" function (php_variables.c) when hashing form posts and updating a hash table...
Last Update Date: 22 May 2012 Release Date: 6 Feb 2012 7640 Views

RISK: Medium Risk

Medium Risk

libpng `png_decompress_chunk()´ Integer Overflow Vulnerability

A vulnerability has been identified in libpng, which can be exploited by malicious people to potentially compromise an application using the library.The vulnerability is caused due to an integer overflow error within the "png_decompress_chunk()" function (pngrutil.c) when uncompressing certain chunks, ...
Last Update Date: 22 May 2012 Release Date: 17 Feb 2012 8511 Views

RISK: High Risk

High Risk

OpenSSL `asn1_d2i_read_bio()´ DER Format Data Processing Vulnerability

A vulnerability has been identified in OpenSSL, which can be exploited by malicious people to potentially compromise an application using the library.The vulnerability is caused due to a type casting error in the "asn1_d2i_read_bio()" function when processing DER format data and can be exploited to...
Last Update Date: 22 May 2012 Release Date: 20 Apr 2012 8043 Views

RISK: Medium Risk

Medium Risk

Samba LSA RPC `take ownership´ Privilege Security Bypass Vulnerability

A vulnerability has been identified in Samba, which can be exploited by malicious users to bypass certain security restrictions. The security issue is caused due to improper application of security checks in the CreateAccount, OpenAccount, AddAccountRights, and RemoveAccountRights remote procedure calls (RPC...
Last Update Date: 22 May 2012 Release Date: 2 May 2012 7805 Views

RISK: Medium Risk

Medium Risk

Apache HTTP Server `httpOnly´ Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apache HTTP Server, which can be exploited by malicious people to disclose potentially sensitive information and cause a DoS (Denial of Service).An error when handling the "%{cookiename}C" log format string when using a threaded MPM can...
Last Update Date: 22 May 2012 Release Date: 30 Jan 2012 7897 Views