Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Windows WINS Memory Overwrite Vulnerability( 11 June 2008 )

An elevation of privilege vulnerability exists in the Windows Internet Name Service (WINS) in the way that WINS does not sufficiently validate the data structures within specially crafted WINS network packets. The vulnerability could allow a local attacker to run code with elevated privileges. An attacker...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7617 Views

RISK: Medium Risk

Medium Risk

Microsoft Internet Explorer Multiple Vulnerabilities( 11 June 2008 )

1. HTML Objects Memory Corruption VulnerabilityA remote code execution vulnerability exists in the way Internet Explorer displays a Web page that contains certain unexpected method calls to HTML objects. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7388 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Bluetooth Vulnerability( 11 June 2008 )

A remote code execution vulnerability exists in the Bluetooth stack in Microsoft Windows because the Bluetooth stack does not correctly handle a large number of service description requests. The vulnerability could allow an attacker to run code with elevated privileges. An attacker who successfully exploited this vulnerability could...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7324 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows DirectX MJPEG/SAMI File Processing Vulnerabilities( 11 June 2008 )

1. MJPEG Decoder VulnerabilityA remote code execution vulnerability exists in the way that the Windows MJPEG Codec handles MJPEG streams in AVI or ASF files. A user would have to preview or play a specially crafted MJPEG file for the vulnerability to be exploited.2. SAMI...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7656 Views

RISK: Medium Risk

Medium Risk

Apple QuickTime Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple QuickTime, which could be exploited by remote attackers to take complete control of an affected system. These issues are caused by memory corruption and implementation errors when processing specially crafted PICT images, AAC-encoded or Indeo video codec media...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7708 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Active Directory Vulnerability( 11 June 2008 )

A denial of service vulnerability exists in implementations of Active Directory on Microsoft Windows 2000 Server, Windows Server 2003, and Windows Server 2008. The vulnerability also exists in implementations of Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003 and...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 7377 Views

RISK: Medium Risk

Medium Risk

VMware Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in various VMware products, which could be exploited by local or remote attackers to bypass security restrictions, cause a denial of service or compromise a vulnerable system.1. Due to an input validation error in the "HGFS.sys" ...
Last Update Date: 28 Jan 2011 Release Date: 6 Jun 2008 8299 Views

RISK: Medium Risk

Medium Risk

Sun Java System Active Server Pages Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sun Java System Active Server Pages, which can be exploited by malicious users to compromise a vulnerable system, and by malicious people to disclose sensitive information, manipulate certain data, bypass certain security restrictions, or to compromise a vulnerable system...
Last Update Date: 28 Jan 2011 Release Date: 5 Jun 2008 7770 Views

RISK: Medium Risk

Medium Risk

CA Secure Content Manager Multiple Vulnerabilities

Multiple vulnerabilities have been identified in CA Secure Content Manager (CA eTrust Secure Content Manager), which could be exploited by attackers to cause a denial of service or compromise an affected system. These issues are caused by unspecified input validation and buffer overflow errors when processing certain...
Last Update Date: 28 Jan 2011 Release Date: 5 Jun 2008 7734 Views

RISK: Medium Risk

Medium Risk

HP Instant Support ActiveX Control Multiple Vulnerabilities

Multiple vulnerabilities have been identified in HP Instant Support, which could be exploited by remote attackers to manipulate data or take complete control of an affected system.1. Due to buffer overflow errors in the "HPISDataManager.dll" ActiveX control when processing malformed data passed...
Last Update Date: 28 Jan 2011 Release Date: 5 Jun 2008 7668 Views