Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft XML Core Services Remote Code Execution Vulnerability

A remote code execution vulnerability exists when the Microsoft XML Core Services (MSXML) parser processes user input. An attacker who successfully exploited the vulnerability could run malicious code remotely to take control of the user’s system.
Last Update Date: 13 Apr 2016 12:00 Release Date: 13 Apr 2016 4621 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Cumulative Security Update

Multiple Internet Explorer Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Internet Explorer improperly accesses objects in memory. These vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. DLL Loading Remote Code Execution VulnerabilityA...
Last Update Date: 13 Apr 2016 11:59 Release Date: 13 Apr 2016 4225 Views

RISK: High Risk

High Risk

Microsoft Edge Cumulative Security Update

Multiple Microsoft Edge Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Microsoft Edge improperly accesses objects in memory. The vulnerabilities could corrupt memory that enables an attacker to execute arbitrary code in the context of the current user. Microsoft Edge Elevation of PrivilegeAn elevation of privilege vulnerability...
Last Update Date: 13 Apr 2016 11:59 Release Date: 13 Apr 2016 3975 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Graphics Component Multiple Vulnerabilities

Multiple Win32k Elevation of Privilege VulnerabilitiesElevation of privilege vulnerabilities exist when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited the vulnerabilities could run arbitrary code in kernel mode. An attacker could then install programs; view, change...
Last Update Date: 13 Apr 2016 11:59 Release Date: 13 Apr 2016 4034 Views

RISK: High Risk

High Risk

Adobe Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Creative Cloud Desktop Application and RoboHelp Server, which could be exploited by remote attackers to execute arbitrary code and disclose sensitive information.
Last Update Date: 13 Apr 2016 11:26 Release Date: 13 Apr 2016 4226 Views

RISK: High Risk

High Risk

Samba 'Badlock' Vulnerabilities

Multiple vulnerabilities, known as Badlock, have been identified in Samba. Exploitation of these vulnerabilities may allow a remote attacker to take control of an affected system or create a denial-of-service condition.
Last Update Date: 13 Apr 2016 10:15 Release Date: 13 Apr 2016 4269 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Content Validation Vulnerability

A vulnerability has been identified in Adobe Flash Player. A remote user can cause arbitrary code to be executed on the target user's system.   A remote user can create specially crafted content that, when loaded by the target user, will execute arbitrary code on...
Last Update Date: 7 Apr 2016 08:54 Release Date: 7 Apr 2016 4756 Views

RISK: Extremely High Risk

Extremely High Risk

Locky Ransomware Encrypts Victim Data

A new variant of ransomware known as Locky has been spreading quickly, through massive spam campaigns and compromised websites. HKCERT has received a lot of reports from victims.  How Locky was spread Spam email Some victims were infected by opening attachments in spam emails: ...
Last Update Date: 6 Apr 2016 Release Date: 18 Mar 2016 12358 Views

RISK: Medium Risk

Medium Risk

Squid Cache Multiple Vulnerabilties

Mulitple vulnerabilities were identified in Squid. A remote user can cause denial of service conditions. A local user can obtain potentially sensitive information from system memory.
Last Update Date: 5 Apr 2016 12:06 Release Date: 5 Apr 2016 4306 Views

RISK: Medium Risk

Medium Risk

Linux Kernel Denial of Service Vulnerability

A vulnerability was identified in the Linux kernel. A local user can corrupt the target filesystem and cause denial of service condition.
Last Update Date: 5 Apr 2016 12:06 Release Date: 5 Apr 2016 4155 Views