Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft Office Excel Multiple Vulnerabilities

Excel SerAuxErrBar Heap Overflow Vulnerability A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change...
Last Update Date: 14 Nov 2012 17:18 Release Date: 14 Nov 2012 3927 Views

RISK: Medium Risk

Medium Risk

VMware Workstation / Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware Workstation and VMware Player, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a user's system. An error due to insecure permissions being assigned to process threads when creating...
Last Update Date: 14 Nov 2012 Release Date: 12 Nov 2012 4309 Views

RISK: High Risk

High Risk

IrfanView TIFF Image Decompression Buffer Overflow Vulnerability

A vulnerability has been identified in IrfanView, which can be exploited by malicious people to compromise a user's system.   The vulnerability is caused due to an error when processing JPEG compressed TIFF images and can be exploited to cause a heap-based buffer overflow via...
Last Update Date: 14 Nov 2012 Release Date: 12 Nov 2012 4259 Views

RISK: High Risk

High Risk

Cisco IronPort Appliance Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco IronPort Web Security Appliance and Cisco IronPort Email Security Appliance, which can be exploited by malicious people to compromise a vulnerable device.   The vulnerabilities are caused due to a bundled vulnerable version of Sophos Engine.
Last Update Date: 14 Nov 2012 Release Date: 12 Nov 2012 4459 Views

RISK: High Risk

High Risk

Sophos Anti-Virus Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sophos Anti-Virus, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to conduct cross-site scripting attacks and compromise a user's system. An integer overflow error when scanning a...
Last Update Date: 9 Nov 2012 Release Date: 6 Nov 2012 4199 Views

RISK: High Risk

High Risk

Apple QuickTime Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple QuickTime, which can be exploited by malicious people to compromise a user's system. A boundary error when processing a PICT file can be exploited to cause a buffer overflow. An error when processing a PICT file can be...
Last Update Date: 9 Nov 2012 11:26 Release Date: 9 Nov 2012 4207 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Google Chrome, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. The application bundles a vulnerable version of Adobe Flash Player. For more information, please refer to SA12110801.An...
Last Update Date: 8 Nov 2012 11:56 Release Date: 8 Nov 2012 5011 Views

RISK: Medium Risk

Medium Risk

Cisco Secure Access Control System Password Validation Vulnerability

A vulnerability has been identified in Cisco Secure Access Control System. A remote user can bypass TACACS+ authentication. The system does not properly validate user-supplied passwords when TACACS+ is the authentication protocol and the Cisco Secure Access Control System (ACS) is configured...
Last Update Date: 8 Nov 2012 11:24 Release Date: 8 Nov 2012 4200 Views

RISK: High Risk

High Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Flash Player. A remote user can cause arbitrary code to be executed on the target user's system. A remote user can create specially crafted Flash content that, when loaded by the target user, will execute arbitrary code...
Last Update Date: 8 Nov 2012 10:23 Release Date: 8 Nov 2012 5058 Views

RISK: Medium Risk

Medium Risk

VLC media player denial of service vulnerability

A vulnerability was identified in VLC media player, which can be exploited by malicious people to cause denial of service condition.   When parsing an invalid PNG image file, a buffer overflow might occur. If successful, a malicious third party could trigger an invalid memory access...
Last Update Date: 7 Nov 2012 12:58 Release Date: 7 Nov 2012 5070 Views