Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

VMware ESXi glibc Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware ESXi, which can be exploited by malicious users to cause a DoS (Denial of Service), potentially gain escalated privileges or compromise a vulnerable system.
Last Update Date: 10 Jan 2013 Release Date: 24 Dec 2012 4254 Views

RISK: Medium Risk

Medium Risk

IBM Tivoli Remote Control / IBM Tivoli Endpoint Manager for Remote Control Java Multiple Vulnerabilities

Multiple vulnerabilities have been indentified in IBM Tivoli Remote Control and IBM Tivoli Endpoint Manager for Remote Control, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system.
Last Update Date: 10 Jan 2013 Release Date: 21 Dec 2012 4376 Views

RISK: Medium Risk

Medium Risk

IBM WebSphere Application Server for z/OS Arbitrary Command Execution Vulnerability

A vulnerability has been reported in IBM WebSphere Application Server for z/OS, which can be exploited by malicious people to compromise a vulnerable system.   The vulnerability is caused due to an unspecified error within the HTTP Server and can be exploited to execute arbitrary commands.
Last Update Date: 10 Jan 2013 Release Date: 21 Dec 2012 4215 Views

RISK: High Risk

High Risk

Microsoft Windows Kernel-Mode Drivers Multiple Font Parsing Vulnerabilities

OpenType Font Parsing Vulnerability A remote code execution vulnerability exists in the way that affected components handle a specially crafted OpenType font file. The vulnerability could allow remote code execution if a user opens a specially crafted OpenType font file. An attacker who successfully exploited this vulnerability could...
Last Update Date: 10 Jan 2013 Release Date: 12 Dec 2012 4820 Views

RISK: High Risk

High Risk

Blue Coat Products OpenSSL DER Format Data Processing Vulnerabilities

Multiple vulnerabilities have been identified in Blue Coat IntelligenceCenter and ProxySG, which can be exploited by malicious people to potentially compromise a vulnerable system.   The vulnerabilities exist in the bundled version of OpenSSL. The vulnerability is caused due to a type casting error in the "asn1_d2i_read_bio...
Last Update Date: 10 Jan 2013 Release Date: 12 Dec 2012 4104 Views

RISK: High Risk

High Risk

Mozilla Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox, Thunderbird and Seamonkey. Remoter attackers can exploit the vulnerabilities to conduct remote code execution, elevation of privilege, sensitive information disclosure or modification and spoofing.
Last Update Date: 10 Jan 2013 Release Date: 9 Jan 2013 4429 Views

RISK: High Risk

High Risk

Ruby on Rails Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Ruby on Rails. A remote user can generate unsafe queries, bypass authentication systems, inject SQL commands, inject and execute arbitrary code, and cause denial of service conditions. A remote user can supply a specially crafted data to exploit...
Last Update Date: 10 Jan 2013 10:42 Release Date: 10 Jan 2013 4407 Views

RISK: Medium Risk

Medium Risk

HP OpenVMS Java Vulnerability

Multiple vulnerabilities have been identified in HP OpenVMS, which can be exploited by malicious people to disclose potentially sensitive information, manipulate certain data, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. For more information, please refer to SA12101802.
Last Update Date: 9 Jan 2013 16:16 Release Date: 9 Jan 2013 4507 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Driver Improper Message Handling Vulnerability

An elevation of privilege vulnerability exists when the Windows kernel improperly handles window broadcast messages. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new...
Last Update Date: 9 Jan 2013 16:01 Release Date: 9 Jan 2013 4686 Views

RISK: High Risk

High Risk

Microsoft Open Data Protocol Denial of Service Vulnerability

A denial of service vulnerability exists in the OData specification that could allow denial of service. The vulnerability could cause the server or service to stop responding and restart.
Last Update Date: 9 Jan 2013 15:10 Release Date: 9 Jan 2013 4048 Views