Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Portable UPnP SDK libupnp `unique_service_name()` Multiple Vulnerabilities

Multiple vulnerabilities have been identified in libupnp (Portable UPnP SDK), which can be exploited by malicious people to execute arbitrary code on the device, cause a denial of service or compromise an application using the library.  The vulnerabilities are caused due to boundary errors within the...
Last Update Date: 1 Feb 2013 Release Date: 30 Jan 2013 4124 Views

RISK: High Risk

High Risk

VLC Media Player ASF Movie Buffer Overflow Vulnerability

A vulnerability has been identified in VLC Media Player. A remote user can cause arbitrary code to be executed on the target user's system.   A remote user can create a specially crafted ASF movie that, when loaded by the target user, will trigger a...
Last Update Date: 31 Jan 2013 19:17 Release Date: 31 Jan 2013 3680 Views

RISK: High Risk

High Risk

Opera Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Opera, which can be exploited by malicious people to compromise a user's system. An error when handling certain DOM events can be exploited to execute arbitrary code.An error when handling clipPaths within SVG documents can be exploited to...
Last Update Date: 31 Jan 2013 15:37 Release Date: 31 Jan 2013 3639 Views

RISK: Medium Risk

Medium Risk

Wireshark Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Wireshark, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. Errors in the Bluetooth HCI, CSN.1, DCP-ETSI DOCSIS CM-STAUS, IEEE...
Last Update Date: 31 Jan 2013 15:36 Release Date: 31 Jan 2013 3577 Views

RISK: Medium Risk

Medium Risk

Cisco IOS XR Unspecified Denial of Service Vulnerability

A vulnerability has been identified in Cisco IOS XR, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an unspecified error when processing certain packets and can be exploited to slow down the processing of legitimate...
Last Update Date: 30 Jan 2013 14:40 Release Date: 30 Jan 2013 3625 Views

RISK: High Risk

High Risk

IBM WebSphere Message Broker Java Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IBM WebSphere Message Broker, which can be exploited by malicious people to disclose potentially sensitive information, manipulate certain data, cause denial of service, and potentially compromise a vulnerable system.   The vulnerabilities exist in the bundled version of Java. ...
Last Update Date: 30 Jan 2013 13:49 Release Date: 30 Jan 2013 3788 Views

RISK: Medium Risk

Medium Risk

Apple TV Kernel Memory Access Vulnerability

Multiple vulnerabilities have been identified in Apple TV, which can be exploited by malicious people to compromise a user's device.
Last Update Date: 30 Jan 2013 13:41 Release Date: 30 Jan 2013 3662 Views

RISK: High Risk

High Risk

Apple iOS Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple iOS, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, and compromise a user's device.
Last Update Date: 30 Jan 2013 13:40 Release Date: 30 Jan 2013 4154 Views

RISK: Medium Risk

Medium Risk

Ruby on Rails 3.0 and 2.3 JSON Parser vulnerability

A vulnerability has been identified in Ruby on Rails JSON Parser. The JSON code for Ruby on Rails which allows attackers to bypass authentication systems, inject arbitrary SQL, inject and execute arbitrary code, or perform a DoS attack on a Rails application.   The JSON Parsing...
Last Update Date: 29 Jan 2013 17:04 Release Date: 29 Jan 2013 3830 Views

RISK: High Risk

High Risk

Mass Scam Email Impersonating HKCERT Distributing Malware

HKCERT received an incident report related to a scam email on 25 Jan 2013. The scam email impersonated as HKCERT alert email sent to the public about an extremely critical vulnerability. The sender address of the scam email is "[email protected]", with the...
Last Update Date: 25 Jan 2013 20:00 Release Date: 25 Jan 2013 3799 Views