Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Oracle Products Multiple vulnerabilities

Several vulnerabilities were identified in Oracle Products. A remote user can partially access and modify data on the target system. A remote user can cause partial denial of service conditions.
Last Update Date: 18 Jul 2012 11:29 Release Date: 18 Jul 2012 5340 Views

RISK: Medium Risk

Medium Risk

libexif Multiple Vulnerabilities

Multiple vulnerabilities have been identified in libexif, which can be exploited by malicious people to disclose certain sensitive information, cause a DoS (Denial of Service), and compromise an application using the library.An out-of-bounds read error within the "exif_entry_get_value()" ...
Last Update Date: 16 Jul 2012 11:50 Release Date: 16 Jul 2012 5298 Views

RISK: Medium Risk

Medium Risk

VMware ESXi libxml2 Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware ESXi, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system.
Last Update Date: 16 Jul 2012 11:50 Release Date: 16 Jul 2012 5146 Views

RISK: Medium Risk

Medium Risk

Cisco TelePresence Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco TelePresence. A remote user on the adjacent network can send specially crafted Cisco Discovery Protocol packets to trigger a buffer overflow and execute arbitrary code on the target system with elevated privileges. (Cisco TelePresence Recording Server, Immersive Endpoint devices, ...
Last Update Date: 13 Jul 2012 Release Date: 12 Jul 2012 5210 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

 Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to compromise a user's system.A use-after-free error exists within counter handling.A use-after-free error exists within layout height tracking....
Last Update Date: 13 Jul 2012 10:55 Release Date: 13 Jul 2012 5115 Views

RISK: High Risk

High Risk

Linux Kernel IPv6 Netfilter Connection Tracking Vulnerability

A vulnerability has been identified in the Linux Kernel. A remote user can send specially crafted packets to trigger a null pointer dereference in nf_ct_frag6_reasm() and cause the target system to crash. Systems using IPv6 and also having the nf_conntrack_ipv6 kernel module loaded are affected.
Last Update Date: 13 Jul 2012 Release Date: 12 Jul 2012 5227 Views

RISK: Extremely High Risk

Extremely High Risk

Microsoft XML Core Services Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Microsoft XML Core Services handles objects in memory. The vulnerability could allow remote code execution if a user views a website that contains specially crafted content. An attacker who successfully exploited this vulnerability could take complete control of...
Last Update Date: 11 Jul 2012 17:19 Release Date: 11 Jul 2012 4980 Views

RISK: Medium Risk

Medium Risk

Microsoft Office for Mac Insecure Filesystem Permissions Vulnerability

An elevation of privilege vulnerability exists in the way that folder permissions are set in certain Microsoft Office for Mac installations. An attacker could place a malicious executable in the Microsoft Office 2011 folder. If a user later logs on and runs the malicious executable, attacker-...
Last Update Date: 11 Jul 2012 17:18 Release Date: 11 Jul 2012 4925 Views

RISK: Medium Risk

Medium Risk

Microsoft SharePoint Multiple Vulnerabilities

HTML Sanitization Vulnerability An information disclosure vulnerability exists in the way that HTML strings are sanitized. An attacker who successfully exploited this vulnerability could perform cross-site scripting attacks and run script in the security context of the logged-on user. XSS scriptresx.ashx Vulnerability...
Last Update Date: 11 Jul 2012 17:17 Release Date: 11 Jul 2012 4939 Views

RISK: High Risk

High Risk

Microsoft Windows TLS Protocol Vulnerability

An information disclosure vulnerability exists in TLS encryption protocol. This vulnerability affects the protocol itself and is not specific to the Windows operating system. This is an information disclosure vulnerability that allows the decryption of encrypted TLS traffic. This vulnerability primarily impacts HTTPS traffic, since the...
Last Update Date: 11 Jul 2012 17:16 Release Date: 11 Jul 2012 4948 Views