Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft Office, Windows, .NET Framework, and Silverlight Multiple Vulnerabilities

TrueType Font Parsing Vulnerability A remote code execution vulnerability exists in the way that affected components handle a specially crafted TrueType font file. The vulnerability could allow remote code execution if a user opens a specially crafted TrueType font file. An attacker who successfully exploited this vulnerability...
Last Update Date: 9 May 2012 17:35 Release Date: 9 May 2012 7684 Views

RISK: High Risk

High Risk

Microsoft Windows Partition Manager Privilege Escalation Vulnerability

An elevation of privilege vulnerability exists in the way that Windows Partition Manager handles device relations requests. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create...
Last Update Date: 9 May 2012 17:32 Release Date: 9 May 2012 7327 Views

RISK: High Risk

High Risk

Microsoft Windows TCP/IP Stack Two Vulnerabilities

Windows Firewall Bypass Vulnerability A security feature bypass vulnerability exists in Windows due to the way that Windows Firewall handles outbound broadcast packets. An attacker who successfully exploited this vulnerability could bypass the Windows Firewall defense-in-depth mechanism to facilitate exploitation of other vulnerabilities.   ...
Last Update Date: 9 May 2012 16:12 Release Date: 9 May 2012 7319 Views

RISK: High Risk

High Risk

Microsoft Visio Viewer VSD File Format Memory Corruption Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Visio validates attributes when handling specially crafted Visio files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete...
Last Update Date: 9 May 2012 16:06 Release Date: 9 May 2012 7491 Views

RISK: High Risk

High Risk

Microsoft Office Excel Multiple Vulnerabilities

Excel File Format Memory Corruption Vulnerability A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, ...
Last Update Date: 9 May 2012 15:57 Release Date: 9 May 2012 7370 Views

RISK: High Risk

High Risk

Microsoft Word RTF Mismatch Vulnerability

A remote code execution vulnerability exists in the way that affected Microsoft Office software parses specially crafted Rich Text Format (RTF) data. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, ...
Last Update Date: 9 May 2012 15:55 Release Date: 9 May 2012 7449 Views

RISK: Medium Risk

Medium Risk

Apple iOS Remote Code Execution and Address Bar Urls Spoofing Vulnerabilities

Two vulnerabilities were identified in Apple iOS. A remote user can cause arbitrary code to be executed on the target user's system. A remote user can spoof the address bar URL. A remote user can create a specially crafted file that, when loaded by...
Last Update Date: 8 May 2012 12:40 Release Date: 8 May 2012 8486 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X FileVault Plain Text Password Logging Vulnerability

A security issue has been identified in Apple Mac OS X, which can be exploited by malicious people with physical access to bypass certain security restrictions.   The security issue is caused due to the debug switch being enabled within FileVault when using "Legacy ...
Last Update Date: 8 May 2012 12:33 Release Date: 8 May 2012 8290 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Object Confusion Vulnerability

A vulnerability has been identified in Adobe Flash Player, which can be exploited by remote users to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
Last Update Date: 7 May 2012 12:40 Release Date: 7 May 2012 7801 Views

RISK: High Risk

High Risk

VMware ESX Server / ESXi Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware ESX Server and VMware ESXi, which can be exploited by malicious users to escalated privileges, cause a DoS (Denial of Service) and potentially compromise a vulnerable system. An errors when handling RPC commands can be exploited to cause...
Last Update Date: 7 May 2012 12:39 Release Date: 7 May 2012 8042 Views