Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Apple QuickTime Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple QuickTime, which can be exploited when viewing maliciously crafted PICT, TeXML, Targa or movie files and website to cause application termination or arbitrary code execution.  
Last Update Date: 13 Dec 2012 10:38 Release Date: 13 Dec 2012 4246 Views

RISK: Medium Risk

Medium Risk

Citrix XenApp XML Service Interface Vulnerability

A vulnerability has been identified in Citrix XenApp. A remote user can execute arbitrary code on the target system. A remote user can send specially crafted data to trigger a flaw in the XML Service interface and execute arbitrary code on the target system. The code will...
Last Update Date: 13 Dec 2012 10:34 Release Date: 13 Dec 2012 4165 Views

RISK: High Risk

High Risk

VLC Media Player SWF Video Decoding Use-After-Free Vulnerability

A vulnerability has been identified in VLC Media Player, which can be exploited by malicious people to potentially compromise a user's system.   The vulnerability is caused due to a use-after-free error when releasing a picture object during video decoding of Flash (...
Last Update Date: 13 Dec 2012 10:31 Release Date: 13 Dec 2012 4336 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Revoked Certificate Bypass Vulnerability

A security feature bypass vulnerability exists in Windows due to the way the IP-HTTPS Component handles certificates. An attacker who successfully exploited this vulnerability could bypass certificate validation checks.
Last Update Date: 12 Dec 2012 14:51 Release Date: 12 Dec 2012 4031 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows DirectPlay Heap Overflow Vulnerability

A remote code execution vulnerability exists in the way that DirectPlay handles specially crafted content. The vulnerability could allow remote code execution if an attacker convinces a user to view a specially crafted Office document with embedded content. An attacker who successfully exploited this vulnerability could take complete...
Last Update Date: 12 Dec 2012 14:51 Release Date: 12 Dec 2012 4045 Views

RISK: High Risk

High Risk

Microsoft Windows Filename Parsing Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Windows parses filenames. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user.
Last Update Date: 12 Dec 2012 14:51 Release Date: 12 Dec 2012 4370 Views

RISK: High Risk

High Risk

Microsoft Exchange Server Denial of Service Vulnerability

A denial of service vulnerability exists in Microsoft Exchange Server when Exchange improperly handles RSS feeds. The vulnerability could cause the Information Store service on the affected system to become unresponsive until the process is forcibly terminated. This unresponsive condition could cause Exchange databases to dismount, and...
Last Update Date: 12 Dec 2012 14:50 Release Date: 12 Dec 2012 4047 Views

RISK: High Risk

High Risk

Microsoft Word RTF `listoverridecount` Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that affected Microsoft Office software parses specially crafted Rich Text Format (RTF) data. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, ...
Last Update Date: 12 Dec 2012 14:50 Release Date: 12 Dec 2012 4879 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Multiple Vulnerabilities

InjectHTMLStream Use After Free Vulnerability A remote code execution vulnerability exists in the way that Internet Explorer accesses an object in memory that has been deleted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current...
Last Update Date: 12 Dec 2012 14:31 Release Date: 12 Dec 2012 4780 Views

RISK: Medium Risk

Medium Risk

Adobe ColdFusion Bypass Sandbox Restrictions Vulnerability

A vulnerability has been identified in Adobe ColdFusion. A local user can obtain elevated privileges on the target system.  A remote authenticated user or a local user may be able to violate sandbox permissions in a shared hosting environment.
Last Update Date: 12 Dec 2012 14:13 Release Date: 12 Dec 2012 4068 Views