Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Silverlight Multiple Vulnerabilities

Microsoft Silverlight RCE Vulnerability A remote code execution vulnerability exists when Microsoft Silverlight incorrectly handles certain open and close requests that can result in read- and write-access violations. Multiple Microsoft Silverlight Information Disclosure Vulnerabilities Multiple information disclosure vulnerabilities exist when Silverlight fails to properly...
Last Update Date: 9 Dec 2015 13:55 Release Date: 9 Dec 2015 4106 Views

RISK: Medium Risk

Medium Risk

Microsoft Graphics Component Remote Code Execution Vulnerabilities

Multiple remote code execution vulnerabilities exist when the Windows font library improperly handles specially crafted embedded fonts. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights.
Last Update Date: 9 Dec 2015 13:55 Release Date: 9 Dec 2015 3939 Views

RISK: High Risk

High Risk

Microsoft Windows DNS Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly parse requests. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account. Windows servers that are configured as DNS...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 4018 Views

RISK: Medium Risk

Medium Risk

Microsoft JScript and VBScript Cumulative Security Update

Scripting Engine Information Disclosure Vulnerability An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user’s computer or data. Scripting Engine Memory Corruption Vulnerability A remote code execution vulnerability...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 4016 Views

RISK: High Risk

High Risk

Microsoft Edge Cumulative Security Update

Multiple Microsoft Edge Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Microsoft Edge improperly accesses objects in memory. The vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. Microsoft Browser Elevation of Privilege VulnerabilityAn...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 4117 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Cumulative Security Update

Multiple Internet Explorer Memory Corruption VulnerabilitiesMultiple remote code execution vulnerabilities exist when Internet Explorer improperly accesses objects in memory. These vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. Multiple Microsoft Browser XSS Filter Bypass...
Last Update Date: 9 Dec 2015 13:54 Release Date: 9 Dec 2015 3924 Views

RISK: High Risk

High Risk

Apple Multiple OS and Applications Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple iOS, tvOS, OS X, watchOS, Safari and Xcode, which can be exploited by remote attacker to execute arbitrary code.
Last Update Date: 9 Dec 2015 12:42 Release Date: 9 Dec 2015 4229 Views

RISK: Medium Risk

Medium Risk

OpenSSL Multiple Vulnerabilities

Multiple vulnerabilities have been identified in OpenSSL. A remote user can cause the target service to crash and obtain potentially sensitive information on the target system.A remote server can send a specially crafted ServerKeyExchange for an anonymous DH ciphersuite with the value of p set to to...
Last Update Date: 9 Dec 2015 Release Date: 7 Dec 2015 4089 Views

RISK: High Risk

High Risk

Apache OpenOffice Remote Code Execution Vulnerabilities

Multiple vulnerabilities have been identified in Apache OpenOffice, which can be exploited by remote attacker to execute arbitrary code on the target system.A remote user can create a specially crafted document that, when loaded by the target user, will trigger a bug in the handling...
Last Update Date: 7 Dec 2015 Release Date: 9 Nov 2015 3931 Views

RISK: Medium Risk

Medium Risk

Dell eDellRoot Certificate Spoofing Vulnerability

A vulnerability was identified in Dell Foundation Services of Dell systems. It installs the eDellRoot certificate that includes a private key on Microsoft Windows systems. This allows attackers to create trusted certificates and perform impersonation, man-in-the-middle (MiTM), and passive...
Last Update Date: 7 Dec 2015 Release Date: 25 Nov 2015 4287 Views