Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Wireshark Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Wireshark, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a user's system. NULL pointer dereference errors when reading certain packet information can be exploited to cause a crash...
Last Update Date: 12 Jan 2012 10:29 Release Date: 12 Jan 2012 7815 Views

RISK: Medium Risk

Medium Risk

Microsoft Anti-Cross Site Scripting Library Bypass Vulnerability

An information disclosure vulnerability exists when the Microsoft Anti-Cross Site Scripting (AntiXSS) Library incorrectly sanitizes specially crafted HTML. An attacker who successfully exploited this vulnerability could perform a cross-site scripting (XSS) attack on a website that is using the AntiXSS Library...
Last Update Date: 11 Jan 2012 11:09 Release Date: 11 Jan 2012 8004 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows SSL/TLS Protocols Vulnerability

An information disclosure vulnerability exists in SSL 3. and TLS 1. encryption protocols. This vulnerability affects the protocol itself and is not specific to the Windows operating system. This is an information disclosure vulnerability that allows the decryption of encrypted SSL/TLS traffic. This...
Last Update Date: 11 Jan 2012 11:06 Release Date: 11 Jan 2012 7995 Views

RISK: High Risk

High Risk

Microsoft Windows Assembly Execution Vulnerability

A remote code execution vulnerability exists in the way that Windows Packager loads ClickOnce applications embedded in Microsoft Office files.
Last Update Date: 11 Jan 2012 11:06 Release Date: 11 Jan 2012 7844 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Client/Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Windows CSRSS due to the way that the CSRSS processes a sequence of specially crafted Unicode characters. An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then...
Last Update Date: 11 Jan 2012 11:04 Release Date: 11 Jan 2012 7733 Views

RISK: High Risk

High Risk

Microsoft Windows Object Packager Insecure Executable Launching Vulnerability

A remote code execution vulnerability exists in the way that Windows registers and uses the Windows Object Packager. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or...
Last Update Date: 11 Jan 2012 11:03 Release Date: 11 Jan 2012 7754 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel SafeSEH Bypass Vulnerability

A security feature bypass vulnerability exists in Windows due to the way the kernel loads the structured exception handling tables. An attacker who successfully exploited this vulnerability could bypass the SafeSEH defense-in-depth mechanism to facilitate exploitation of other vulnerabilities.
Last Update Date: 11 Jan 2012 11:01 Release Date: 11 Jan 2012 8134 Views

RISK: High Risk

High Risk

Microsoft Windows Media Multiple Remote Code Execution Vulnerabilities

MIDI Remote Code Execution Vulnerability A remote code execution vulnerability exists in Windows Media Player. An attacker could exploit this vulnerability by constructing a specially crafted MIDI file that could allow remote code execution when played using Windows Media Player. An attacker who successfully exploited this vulnerability could...
Last Update Date: 11 Jan 2012 10:59 Release Date: 11 Jan 2012 7751 Views

RISK: Medium Risk

Medium Risk

IBM WebSphere Application Server Community Edition Tomcat Container Denial of Service Vulnerability

A vulnerability has been reported in IBM WebSphere Application Server Community Edition, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an unspecified error within the Tomcat container and can be exploited to cause a crash...
Last Update Date: 11 Jan 2012 09:49 Release Date: 11 Jan 2012 7832 Views

RISK: High Risk

High Risk

Adobe Reader and Acrobat Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Reader and Acrobat, which can be exploited to execute arbitrary code on the target user's system.  A remote user can create a specially crafted file that, when loaded by the target user, will execute arbitrary code on...
Last Update Date: 11 Jan 2012 09:44 Release Date: 11 Jan 2012 7824 Views