Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft .NET Framework Two Serialization Vulnerabilities

.NET Framework Serialization Vulnerability A remote code execution vulnerability exists in the Microsoft .NET Framework due to the improper serialization of untrusted input. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; ...
Last Update Date: 9 May 2012 18:07 Release Date: 9 May 2012 4550 Views

RISK: High Risk

High Risk

Microsoft Office, Windows, .NET Framework, and Silverlight Multiple Vulnerabilities

TrueType Font Parsing Vulnerability A remote code execution vulnerability exists in the way that affected components handle a specially crafted TrueType font file. The vulnerability could allow remote code execution if a user opens a specially crafted TrueType font file. An attacker who successfully exploited this vulnerability...
Last Update Date: 9 May 2012 17:35 Release Date: 9 May 2012 4679 Views

RISK: High Risk

High Risk

Microsoft Windows Partition Manager Privilege Escalation Vulnerability

An elevation of privilege vulnerability exists in the way that Windows Partition Manager handles device relations requests. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create...
Last Update Date: 9 May 2012 17:32 Release Date: 9 May 2012 4466 Views

RISK: High Risk

High Risk

Microsoft Windows TCP/IP Stack Two Vulnerabilities

Windows Firewall Bypass Vulnerability A security feature bypass vulnerability exists in Windows due to the way that Windows Firewall handles outbound broadcast packets. An attacker who successfully exploited this vulnerability could bypass the Windows Firewall defense-in-depth mechanism to facilitate exploitation of other vulnerabilities.   ...
Last Update Date: 9 May 2012 16:12 Release Date: 9 May 2012 4374 Views

RISK: High Risk

High Risk

Microsoft Visio Viewer VSD File Format Memory Corruption Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Visio validates attributes when handling specially crafted Visio files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete...
Last Update Date: 9 May 2012 16:06 Release Date: 9 May 2012 4473 Views

RISK: High Risk

High Risk

Microsoft Office Excel Multiple Vulnerabilities

Excel File Format Memory Corruption Vulnerability A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, ...
Last Update Date: 9 May 2012 15:57 Release Date: 9 May 2012 4488 Views

RISK: High Risk

High Risk

Microsoft Word RTF Mismatch Vulnerability

A remote code execution vulnerability exists in the way that affected Microsoft Office software parses specially crafted Rich Text Format (RTF) data. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, ...
Last Update Date: 9 May 2012 15:55 Release Date: 9 May 2012 4455 Views

RISK: Medium Risk

Medium Risk

Apple iOS Remote Code Execution and Address Bar Urls Spoofing Vulnerabilities

Two vulnerabilities were identified in Apple iOS. A remote user can cause arbitrary code to be executed on the target user's system. A remote user can spoof the address bar URL. A remote user can create a specially crafted file that, when loaded by...
Last Update Date: 8 May 2012 12:40 Release Date: 8 May 2012 5440 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X FileVault Plain Text Password Logging Vulnerability

A security issue has been identified in Apple Mac OS X, which can be exploited by malicious people with physical access to bypass certain security restrictions.   The security issue is caused due to the debug switch being enabled within FileVault when using "Legacy ...
Last Update Date: 8 May 2012 12:33 Release Date: 8 May 2012 4747 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Object Confusion Vulnerability

A vulnerability has been identified in Adobe Flash Player, which can be exploited by remote users to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
Last Update Date: 7 May 2012 12:40 Release Date: 7 May 2012 4812 Views