Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Cisco TelePresence Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco TelePresence. A remote user on the adjacent network can send specially crafted Cisco Discovery Protocol packets to trigger a buffer overflow and execute arbitrary code on the target system with elevated privileges. (Cisco TelePresence Recording Server, Immersive Endpoint devices, ...
Last Update Date: 13 Jul 2012 Release Date: 12 Jul 2012 4449 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

 Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to compromise a user's system.A use-after-free error exists within counter handling.A use-after-free error exists within layout height tracking....
Last Update Date: 13 Jul 2012 10:55 Release Date: 13 Jul 2012 4384 Views

RISK: High Risk

High Risk

Linux Kernel IPv6 Netfilter Connection Tracking Vulnerability

A vulnerability has been identified in the Linux Kernel. A remote user can send specially crafted packets to trigger a null pointer dereference in nf_ct_frag6_reasm() and cause the target system to crash. Systems using IPv6 and also having the nf_conntrack_ipv6 kernel module loaded are affected.
Last Update Date: 13 Jul 2012 Release Date: 12 Jul 2012 4484 Views

RISK: Extremely High Risk

Extremely High Risk

Microsoft XML Core Services Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Microsoft XML Core Services handles objects in memory. The vulnerability could allow remote code execution if a user views a website that contains specially crafted content. An attacker who successfully exploited this vulnerability could take complete control of...
Last Update Date: 11 Jul 2012 17:19 Release Date: 11 Jul 2012 4210 Views

RISK: Medium Risk

Medium Risk

Microsoft Office for Mac Insecure Filesystem Permissions Vulnerability

An elevation of privilege vulnerability exists in the way that folder permissions are set in certain Microsoft Office for Mac installations. An attacker could place a malicious executable in the Microsoft Office 2011 folder. If a user later logs on and runs the malicious executable, attacker-...
Last Update Date: 11 Jul 2012 17:18 Release Date: 11 Jul 2012 4156 Views

RISK: Medium Risk

Medium Risk

Microsoft SharePoint Multiple Vulnerabilities

HTML Sanitization Vulnerability An information disclosure vulnerability exists in the way that HTML strings are sanitized. An attacker who successfully exploited this vulnerability could perform cross-site scripting attacks and run script in the security context of the logged-on user. XSS scriptresx.ashx Vulnerability...
Last Update Date: 11 Jul 2012 17:17 Release Date: 11 Jul 2012 4165 Views

RISK: High Risk

High Risk

Microsoft Windows TLS Protocol Vulnerability

An information disclosure vulnerability exists in TLS encryption protocol. This vulnerability affects the protocol itself and is not specific to the Windows operating system. This is an information disclosure vulnerability that allows the decryption of encrypted TLS traffic. This vulnerability primarily impacts HTTPS traffic, since the...
Last Update Date: 11 Jul 2012 17:16 Release Date: 11 Jul 2012 4203 Views

RISK: High Risk

High Risk

Microsoft Windows Shell Command Injection Vulnerability

A remote code execution vulnerability exists in the way Windows handles file and directory names. This vulnerability could allow remote code execution if a user opens a file or directory with a specially crafted name. If a user is logged on with administrative user rights...
Last Update Date: 11 Jul 2012 17:13 Release Date: 11 Jul 2012 4376 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Multiple Vulnerability

An elevation of privilege vulnerability exists when the Windows kernel-mode driver improperly validates parameters when creating a hook procedure. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete...
Last Update Date: 11 Jul 2012 17:11 Release Date: 11 Jul 2012 4249 Views

RISK: High Risk

High Risk

Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Visual Basic for Applications handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or...
Last Update Date: 11 Jul 2012 17:10 Release Date: 11 Jul 2012 4394 Views