Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Cisco Products Denial of Service Vulnerabilities

A vulnerability was identified in Cisco ASR 9000 Series Routers. A remote user can cause the target service to reload. A vulnerability was identified in Cisco IOS and IOS XE. A remote user can cause the target system to crash.
Last Update Date: 24 Jul 2015 10:16 Release Date: 24 Jul 2015 3997 Views

RISK: Extremely High Risk

Extremely High Risk

Microsoft Font Driver Remote Code Execution Vulnerability

A vulnerability was found in the Windows Adobe Type Manager Library. A remote user can trigger arbitrary code execution on the target system.A remote user can create a specially crafted OpenType font file that, when loaded by the target user, will trigger a flaw in...
Last Update Date: 22 Jul 2015 Release Date: 21 Jul 2015 4671 Views

RISK: Medium Risk

Medium Risk

Microsoft Malicious Software Removal Tool Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Microsoft Malicious Software Removal Tool (MSRT) when it fails to properly handle a race condition involving a DLL-planting scenario. An authenticated attacker who successfully exploited this vulnerability could elevate privileges on a target system. An attacker...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4251 Views

RISK: Medium Risk

Medium Risk

Microsoft ATM Font Driver Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Adobe Type Manager Font Driver (ATMFD) when it fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. An attacker could then install...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4035 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Installer Service Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in some cases in the Windows Installer service when it improperly runs custom action scripts. An attacker who successfully exploited this vulnerability could elevate privileges on a targeted system. An attacker could then install programs; view, change, or delete...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4050 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Driver Elevation of Privilege Vulnerabilities

Win32k Elevation of Privilege VulnerabilityAn elevation of privilege vulnerability exists due to the way the Windows kernel-mode driver handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3991 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Graphics Component Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Windows graphics component when it fails to properly process bitmap conversions. An authenticated attacker who successfully exploited this vulnerability could elevate privileges on a targeted system. An attacker could then install programs; view, change, or delete data...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4022 Views

RISK: Medium Risk

Medium Risk

Microsoft Netlogon Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Netlogon that is caused when the service improperly establishes a secure communications channel to a primary domain controller (PDC). To successfully exploit this vulnerability, an attacker would first need to have access to a PDC on a target network. ...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4091 Views

RISK: High Risk

High Risk

Microsoft Windows Hyper-V Remote Code Execution Vulnerabilities

Multiple Internet Explorer Information Disclosure VulnerabilitiesA remote code execution vulnerability exists in Windows Hyper-V in a host context if an authenticated and privileged user on a guest virtual machine hosted by Hyper-V runs a specially crafted application. Hyper-V System Data Structure VulnerabilityA remote...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4008 Views

RISK: High Risk

High Risk

Microsoft RDP Remote Code Execution Vulnerability

A remote code execution vulnerability exists in how the Remote Desktop Protocol (RDP) (terminal) service handles packets. While the most likely outcome of this vulnerability is denial of the remote desktop (terminal) service (DOS), remote code execution is possible.
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 4143 Views