Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

GnuTLS "read_server_hello()" Remote Code Execution Vulnerability

A vulnerability has been identified in GnuTLS, which can be exploited by malicious people to compromise an application using the library. The vulnerability is caused due to a boundary error within the "read_server_hello()" function (lib/gnutls_handshake.c) and can be ...
Last Update Date: 5 Jun 2014 Release Date: 3 Jun 2014 3235 Views

RISK: High Risk

High Risk

Microsoft Windows Kernel Denial of Service Vulnerabilities

Two vulnerabilities have been identified in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). An error within win32k.sys when initializing the touch injection context can be exploited to cause a crash. An...
Last Update Date: 5 Jun 2014 Release Date: 3 Jun 2014 3324 Views

RISK: Medium Risk

Medium Risk

McAfee Network Data Loss Prevention Vulnerabilities

Multiple vulnerabilities were identified in McAfee Network Data Loss Prevention (DLP). A remote user can cause denial of service conditions, inject SQL commands and conduct click-jacking attacks.A remote user can send a specially crafted RAR file to trigger a segmentation fault and make...
Last Update Date: 4 Jun 2014 09:12 Release Date: 4 Jun 2014 3182 Views

RISK: Medium Risk

Medium Risk

PHP CDF Processing Vulnerability

Two vulnerabilities were identified in PHP. A remote user can cause denial of service conditions.A remote user can send a specially crafted CDF file to cause performance degradation via file_printf() calls.A remote user can send a specially crafted CDF file to trigger an infinite...
Last Update Date: 4 Jun 2014 09:12 Release Date: 4 Jun 2014 3343 Views

RISK: Medium Risk

Medium Risk

Apache Tomcat Multiple Vulnerabilities

A vulnerability was identified in Apache Tomcat. A remote authenticated user can bypass security restrictions and cause denial of service conditions.
Last Update Date: 30 May 2014 Release Date: 28 May 2014 3306 Views

RISK: Medium Risk

Medium Risk

cPanel 'cgiemail' Character Injection Vulnerability

A vulnerability was identified in cPanel. A remote user can send SPAM via the system. A remote user can inject newline characters via certain parameters to modify email fields and send SPAM to arbitrary destination addresses via cgiemail.
Last Update Date: 30 May 2014 Release Date: 28 May 2014 3271 Views

RISK: Medium Risk

Medium Risk

IBM WebSphere Application Server Java Multiple Vulnerabilities

Two vulnerabilities were identified in IBM WebSphere Application Server, which can be exploited by malicious people to disclose and manipulate certain data. The vulnerabilities are caused due to a bundled vulnerable version of IBM Java.
Last Update Date: 30 May 2014 10:12 Release Date: 30 May 2014 3262 Views

RISK: Medium Risk

Medium Risk

Tor Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Tor, which could be exploited by attackers to cause a denial of service, gain knowledge of sensitive information or execute arbitrary code. 1. A heap overflow error when processing malformed data, which could be exploited to...
Last Update Date: 30 May 2014 Release Date: 19 Jan 2011 7173 Views

RISK: Medium Risk

Medium Risk

Oracle Solaris Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle Solaris, which can be exploited by malicious people to disclose potentially sensitive information, conduct spoofing, session fixation, and script insertion attacks, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system...
Last Update Date: 27 May 2014 11:13 Release Date: 27 May 2014 3123 Views

RISK: Medium Risk

Medium Risk

Apple OS X Server Ruby Floating Point Parsing Buffer Overflow Vulnerability

A vulnerability has been identified in Apple OS X Server, which can be exploited by malicious people to compromise a vulnerable system.
Last Update Date: 26 May 2014 Release Date: 22 May 2014 3139 Views